Lucene search

K
osvGoogleOSV:CVE-2021-33473
HistoryJun 02, 2022 - 8:15 p.m.

CVE-2021-33473

2022-06-0220:15:07
Google
osv.dev
3
dragonfly ruby gem
argument injection
arbitrary files

AI Score

9

Confidence

High

EPSS

0.001

Percentile

45.6%

An argument injection vulnerability in Dragonfly Ruby Gem v1.3.0 allows attackers to read and write arbitrary files when the verify_url option is disabled. This vulnerability is exploited via a crafted URL.

AI Score

9

Confidence

High

EPSS

0.001

Percentile

45.6%