CVE-2020-8130MEDIUMCVSS 6.4fixed in rake 12.3.3-1 (bookworm)2020
CVE-2020-8130 [MEDIUM] CVE-2020-8130: rake - There is an OS command injection vulnerability in Ruby Rake < 12.3.3 in Rake::Fi...
There is an OS command injection vulnerability in Ruby Rake < 12.3.3 in Rake::FileList when supplying a filename that begins with the pipe character `|`.
Scope: local
bookworm: resolved (fixed in 12.3.3-1)
bullseye: resolved (fixed in 12.3.3-1)
forky: resolved (fixed in 12.3.3-1)
sid: resolved (fixed in 12.3.3-1)
trixie: resolved (fixed in 12.3.3-1)
debian