fig. 01 — GHSA-44vf-8ffm-v2qh, the advisory selected below
// advisories
GHSA-44vf-8ffm-v2qh
HIGH
All versions of rails-session-decoder are missing verification of the Message Authentication Code appended to the cookies. This may lead to decryption of cipher text thus exposing encrypted information.