Minimagick Project Minimagick 3.7.0

CPE Details

Minimagick Project Minimagick 3.7.0
3.7.0
2019-07-15
09h13 +00:00
2019-07-15
09h13 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:minimagick_project:minimagick:3.7.0:*:*:*:*:*:*:*

Informations

Vendor

minimagick_project

Product

minimagick

Version

3.7.0

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2019-13574 2019-07-12 00h31 +00:00 In lib/mini_magick/image.rb in MiniMagick before 4.9.4, a fetched remote image filename could cause remote command execution because Image.open input is directly passed to Kernel#open, which accepts a '|' character followed by a command.
7.8
High