affix/CVE-2022-36231

affix/CVE-2022-36231

Releases0
Stars5
pdf_info <= 0.5.3 OS Command Injection

CVE History

CVEPublishedCVSS v3CVSS v2
9.8 CRITICAL

pdf_info 0.5.3 is vulnerable to Command Execution because the Ruby code uses backticks instead of Open3.