Directory traversal vulnerability in lib/mail/network/delivery_methods/file_delivery.rb
in the Mail gem before 2.4.4 for Ruby allows remote attackers to read arbitrary files via a ..
(dot dot) in the to parameter.
{ "nvd_published_at": "2012-07-18T18:55:01Z", "cwe_ids": [ "CWE-22" ], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2020-06-16T21:31:54Z" }