Evgeni Golov

1 exploit Active since Sep 2017
CVE-2017-14683 WRITEUP HIGH WRITEUP
geminabox < 0.13.7 - Cross-Site Request Forgery via Unintended Gem Upload
geminabox (aka Gem in a Box) before 0.13.7 has CSRF, as demonstrated by an unintended gem upload.
CVSS 8.8