RubyGems package
gyazo
pkg:gem/gyazo
Vulnerabilities (1)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2014-4994 | — | >= 1.0.0, < 2.0.0 | 2.0.0 | Jan 10, 2018 | lib/gyazo/client.rb in the gyazo gem 1.0.0 for Ruby allows local users to write to arbitrary files via a symlink attack on a temporary file, related to time-based filenames. |
- CVE-2014-4994Jan 10, 2018affected >= 1.0.0, < 2.0.0fixed 2.0.0
lib/gyazo/client.rb in the gyazo gem 1.0.0 for Ruby allows local users to write to arbitrary files via a symlink attack on a temporary file, related to time-based filenames.