2017/10/GHSA-p4c6-77gc-694x session fixation protection mechanism in cgi_process.rb in Rails