CVE-2014-4992: Cap-Strap Project Cap-Strap
High severity, CVSS 7.8. EPSS: 0.5% chance of exploitation in the next 30 days.
lib/cap-strap/helpers.rb in the cap-strap gem 0.1.5 for Ruby places credentials on the useradd command line, which allows local users to obtain sensitive information by listing the process.
Affected products
- Cap-Strap Project Cap-Strap: version 0.1.5 only
Published 2018-01-10. Last modified 2026-06-17.