kelredd-pruview gem 0.3.8 for Ruby allows context-dependent attackers to execute arbitrary commands via shell metacharacters in a filename argument to document.rb, video.rb, or videoimage.rb.
rubygems package report
Is kelredd-pruview safe?
1 known vulnerability, worst severity CRITICAL.
// reach
0 direct dependencies
none carry a known advisory
0 packages depend on it
an advisory here reaches each of them
Create a free accountfor every dependency path, dependent and what to upgrade
// ai model usage
Tracked for PyPI packages. HuggingFace models declare Python dependencies, so rubygems packages are not covered.
cvss
0.0
critical
severity band, no base score published
epss
0.00%
medium
chance of exploitation in 30 days, 75th percentile of all CVEs
xyz score
0.0
medium
CyberXYZ composite out of 10
fig. 01 — GHSA-78j3-7wpm-qhvp, the advisory selected below
// 1 advisories
Checked 2026-10-04 at 01:14 UTC. The most recent advisory here was published 2017-10-24. Updated continuously from NVD, GHSA, OSV and CNA feeds.