CVE-2019-16676: simple_form Gem for Ruby Incorrect Access Control for forms based on user input

Severity: Critical

CVSS Score: 9.8

Plataformatec Simple Form has Incorrect Access Control in file_method? in lib/simple_form/form_builder.rb, because a user-supplied string is invoked as a method call.