Description
Ruby through 2.4.7, 2.5.x through 2.5.6, and 2.6.x through 2.6.4 mishandles path checking within File.fnmatch functions.
Remediation
References
Related Vulnerabilities
WordPress Plugin CM Download Manager Cross-Site Scripting (2.7.0)
MySQL CVE-2021-2020 Vulnerability (CVE-2021-2020)
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-3731)
MySQL CVE-2013-0384 Vulnerability (CVE-2013-0384)
OpenSSL NULL Pointer Dereference Vulnerability (CVE-2023-0401)