Security Advisory
CVE-2013-1756
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
The Dragonfly gem 0.7 before 0.8.6 and 0.9.x before 0.9.13 for Ruby, when used with Ruby on Rails, allows remote attackers to execute arbitrary code via a crafted request.