James Laska (jlaska) reports:
While filing an upstream bug regarding CFME not sanitizing
user-input, I discovered it is possible to remotely inject ruby code.
Comment 4Murray McAllister
2013-08-14 03:22:32 UTC
Acknowledgements:
This issue was discovered by James Laska of Red Hat.