CVE-2020-5257 | rubygem up to 0.12.x Dashboard direction data query logic injection
A vulnerability was found in rubygem up to 0.12.x. It has been declared as critical. This vulnerability affects unknown code of the component Dashboard. The manipulation of the argument direction leads to improper neutralization of special elements in data query logic.
This vulnerability was named CVE-2020-5257. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.