CVE-2013-1756

EPSS 2.0%

Dragonfly Code Injection vulnerability

Published: 10/24/2017Modified: 4/14/2025
Also known as:GHSA-p463-639r-q9g9

Description

The Dragonfly gem 0.7 before 0.8.6 and 0.9.x before 0.9.13 for Ruby, when used with Ruby on Rails, allows remote attackers to execute arbitrary code via a crafted request.

Affected packages (1)

References (6)