RubySec

Providing security resources for the Ruby community

CVE-2022-0524 (publify_core): Business Logic Errors in Publify

Business Logic Errors in Publify

Published: February 09, 2022

SECURITY IDENTIFIERS

GEM

publify_core

SEVERITY

CVSS v3.x: 6.5 (Medium)

PATCHED VERSIONS

>= 9.2.7

DESCRIPTION

Publify (formerly known as Typo) prior to version 9.2.7 is vulnerable to business logic errors.

RELATED