CVE-2025-24293: Rails Active Storage Command Injection via Image Processing
Security AdvisoryCVE-2025-24293CriticalRails
Affected:
- activestorage >= 8.0, < 8.0.2.1
- activestorage >= 7.2, < 7.2.2.2
- activestorage >= 5.2.0, < 7.1.5.2
Fixed in:
- 8.0.2.1
- 7.2.2.2
- 7.1.5.2
Referenced CVEs: CVE-2025-24293
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from github.com, cleaned by our LLM pipeline, and translated to English. View original.