Security Advisory

CVE-2021-33575

9.8
CRITICAL

Vulnerability Description

The Pixar ruby-jss gem before 1.6.0 allows remote attackers to execute arbitrary code because of the Plist gem's documented behavior of using Marshal.load during XML document processing.
Published Date May 25, 2021
Official Source NIST NVD Advisory