### [CVE-2017-2096](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-2096) ![](https://img.shields.io/static/v1?label=Product&message=smalruby-editor&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=v0.4.0%20and%20earlier%20&color=brightgreen) ![](https://img.shields.io/static/v1?label=Vulnerability&message=OS%20Command%20Injection&color=brightgreen) ### Description smalruby-editor v0.4.0 and earlier allows remote attackers to execute arbitrary OS commands via unspecified vectors. ### POC #### Reference - http://jvn.jp/en/jp/JVN50197114/index.html #### Github No PoCs found on GitHub currently.