Unrated severityNVD Advisory· Published May 27, 2014· Updated May 6, 2026
CVE-2013-5036
CVE-2013-5036
Description
The Square Squash allows remote attackers to execute arbitrary code via a YAML document in the (1) namespace parameter to the deobfuscation function or (2) sourcemap parameter to the sourcemap function in app/controllers/api/v1_controller.rb.
Affected products
1- cpe:2.3:a:squash:square_squash:-:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5News mentions
0No linked articles in our index yet.