296,733
Total vulnerabilities in the database
A code injection vulnerability exists in the Active Storage >= v5.2.0 that could allow an attacker to execute code via image_processing arguments.
| Software | From | Fixed in |
|---|---|---|
| rubyonrails / active_storage | 7.0.0 | 7.0.2.3 |
| rubyonrails / active_storage | 6.1.0 | 6.1.4.7 |
| rubyonrails / active_storage | 6.0.0 | 6.0.4.7 |
| rubyonrails / active_storage | 5.2.0 | 5.2.6.3 |
| debian / debian_linux | 10.0 | 10.0.x |
activestorage
|
5.2.0 | 5.2.6.3 |
activestorage
|
6.0.0 | 6.0.4.7 |
activestorage
|
6.1.0 | 6.1.4.7 |
activestorage
|
7.0.0 | 7.0.2.3 |