Critical severityNVD Advisory· Published Jan 21, 2020· Updated Aug 6, 2024
CVE-2015-2784
CVE-2015-2784
Description
The papercrop gem before 0.3.0 for Ruby on Rails does not properly handle crop input.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
papercropRubyGems | < 0.3.0 | 0.3.0 |
Affected products
2- Ruby on Rails/papercrop gemdescription
Patches
Vulnerability mechanics
Generated on May 9, 2026. Inputs: CWE entries + fix-commit diffs from this CVE's patches. Citations validated against bundle.
References
4- github.com/advisories/GHSA-m44r-gv6q-9j9rghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2015-2784ghsaADVISORY
- github.com/rsantamaria/papercrop/blob/master/CHANGELOG.mdghsax_refsource_CONFIRMWEB
- github.com/rsantamaria/papercrop/commit/b4ecd95debaf0a8712bd1d34def83f41fc6b3579ghsax_refsource_CONFIRMWEB
News mentions
0No linked articles in our index yet.