In RDoc 3.11 through 6.x before 6.3.1, as distributed with Ruby through 3.0.1, it is possible to execute arbitrary code via | and tags in a filename.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2021-07-29T00:00:00

Updated: 2024-01-05T14:06:20.190720

Reserved: 2021-04-25T00:00:00


Link: CVE-2021-31799

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2021-07-30T14:15:16.620

Modified: 2024-01-05T14:15:46.040


Link: CVE-2021-31799

JSON object: View

cve-icon Redhat Information

No data.

CWE