Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:20062
HistoryMay 16, 2019 - 3:48 a.m.

Escape Sequence Injection

2019-05-1603:48:47
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10

0.002 Low

EPSS

Percentile

58.4%

Ruby is vulnerable to escape sequence injection vulnerability. The vulnerability exists in the function Gem::CommandManager#run. Calling alert_error without escaping may cause an escape sequence injection attacks.