BIT-ruby-2021-28966

Import Source
https://github.com/bitnami/vulndb/tree/main/data/ruby/BIT-ruby-2021-28966.json
Aliases
Published
2024-03-06T11:05:31.087Z
Modified
2024-03-06T11:25:28.861Z
Summary
[none]
Details

In Ruby through 3.0 on Windows, a remote attacker can submit a crafted path when a Web application handles a parameter with TmpDir.

References

Affected packages

Bitnami / ruby

Package

Name
ruby

Affected ranges

Type
SEMVER
Events
Introduced
0The exact introduced commit is unknown
Fixed
2.7.3
Introduced
3.0.0
Fixed
3.0.1