In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade rdoc
to version 6.3.4.1, 6.4.1.1, 6.5.1.1 or higher.
Affected versions of this package are vulnerable to Code Injection due to the parsing of .rdoc_options
as a YAML file without restrictions on the classes that can be restored. An attacker can execute arbitrary code remotely by crafting malicious .rdoc_options
files.