--- gem: pdfkit cve: 2013-1607 osvdb: 90867 url: http://osvdb.org/show/osvdb/90867 title: PDFKit Gem for Ruby PDF File Generation Parameter Handling Remote Code Execution date: 2013-02-21 description: PDFKit Gem for Ruby contains a flaw that is due to the program failing to properly validate input during the handling of parameters when generating PDF files. This may allow a remote attacker to potentially execute arbitrary code via the pdfkit generation options. cvss_v2: patched_versions: - ">= 0.5.3"