Lack of data validation - Path Traversal In ruby
Description
In Ruby through 3.0 on Windows, a remote attacker can submit a crafted path when a Web application handles a parameter with TmpDir.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Component | Affected version | Patched versions |
|---|---|---|---|
alpine v3.18 | 2.7.3-r0 | ||
alpine v3.20 | 2.7.3-r0 | ||
rubygems | 0.1.2 | ||
alpine v3.10 | 2.5.9-r0 | ||
alpine v3.11 | 2.6.7-r0 | ||
alpine v3.12 | 2.7.3-r0 | ||
alpine v3.13 | 2.7.3-r0 | ||
alpine v3.14 | 2.7.3-r0 | ||
alpine v3.15 | 2.7.3-r0 | ||
alpine v3.16 | 2.7.3-r0 |
1-10 of 17
10
Aliases
1. 2. 3. 4. 5. 6. 7.
References
1. 2. 3. 4. 5. 6. 7.