Projectsprouts maintains a narrowly scoped product offering centered on the Sprout application, which exhibits a vulnerability pattern rooted in code-injection weaknesses. This characteristic reflects input-handling exposure typical of application frameworks where dynamic code execution or template processing occurs without sufficient guardrails. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Projectsprouts over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2013-6421HIGH The unpack_zip function in archive_unpacker.rb in the sprout gem 0.7.246 for Ruby allows context-dependent attackers to execute arbitrary commands via shell metacharacters in a (1) | Dec 12, 2013 | 7.5 | 23 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Projectsprouts.
Media articles that mention a CVE ID that affects a product developed by Projectsprouts — matched by CVE ID, not by vendor name.