Concerns of supply-chain attacks amplify as remote code execution was found in Ruby gem strong_password
CYBERSECURITY FEATURED ANALYSIS

Concerns of supply-chain attacks amplify as remote code execution was found in Ruby gem strong_password

SOURCE

Blog RSS Feed | Snyk

DATE

READ

1 min read

On July 5th, 2019, the CVE-2019-13354 security advisory was published for a malicious version of the strong_password Ruby gem which allows for remote code execution in applications bundling the vulnerable dependency.

On July 5th, 2019, the CVE-2019-13354 security advisory was published for a malicious version of the strong_password Ruby gem which allows for remote code execution in applications bundling the vulnerable dependency.