Vulnerabilities > Gyazo Project

DATE CVE VULNERABILITY TITLE RISK
2018-01-10 CVE-2014-4994 Improper Input Validation vulnerability in Gyazo Project Gyazo 1.0.0
lib/gyazo/client.rb in the gyazo gem 1.0.0 for Ruby allows local users to write to arbitrary files via a symlink attack on a temporary file, related to time-based filenames.
local
low complexity
gyazo-project CWE-20
2.1