A vulnerability was found in the actionpack_page-caching gem that allows an attacker to write arbitrary files to a web server, potentially resulting in remote code execution if the attacker can write unescaped ERB to a view. Upstream Advisory: https://groups.google.com/forum/#!topic/rubyonrails-security/CFRVkEytdP8
Created rubygem-actionpack tracking bugs for this issue: Affects: fedora-all [bug 1835656]