Vulnerability DatabaseGHSA-7952-gx68-cjqr

GHSA-7952-gx68-cjqr: 
Ruby vulnerability analysis and mitigation

Impact

When reading a suitably crafted PRX or STX file, MPXJ can be made to write files to arbitrary locations in the file system.

Patches

This issue is addressed in MPXJ version 16.5.0.

Workarounds

Do not read PRX or STX files from untrusted sources.


Source: NVD

Related Ruby vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2026-77602CRITICAL9.9
  • Ruby logoRuby
  • openc3
NoYesSep 23, 2026
CVE-2026-77601HIGH8.8
  • Ruby logoRuby
  • openc3
NoYesSep 23, 2026
GHSA-4825-p4xm-pcf2HIGH7.1
  • Ruby logoRuby
  • spree_api
NoYesSep 22, 2026
GHSA-7952-gx68-cjqrMEDIUM5.3
  • Ruby logoRuby
  • mpxj
NoYesSep 22, 2026
CVE-2026-65829MEDIUM5.3
  • Java logoJava
  • mpxj
NoYesSep 22, 2026

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management