VYPR

Bibtex Ruby

by Bibtex Ruby Project

CVEs (1)

  • CVE-2019-10780CriJan 22, 2020
    risk 0.57cvss 9.8epss 0.03

    BibTeX-ruby before 5.1.0 allows shell command injection due to unsanitized user input being passed directly to the built-in Ruby Kernel.open method through BibTeX.open.