VYPR
High severityNVD Advisory· Published Mar 20, 2013· Updated Apr 29, 2026

CVE-2013-2616

CVE-2013-2616

Description

lib/mini_magick.rb in the MiniMagick Gem 1.3.1 for Ruby allows remote attackers to execute arbitrary commands via shell metacharacters in a URL.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
mini_magickRubyGems
< 3.6.03.6.0

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

9

News mentions

0

No linked articles in our index yet.