
🚨 CRITICAL: CVE-2022-32511 (CVSS 9.8) jmespath[.]rb for Ruby <1.6.1 uses unsafe JSON[.]load instead of JSON[.]parse, enabling remote code execution. Update to v1.6.1+ immediately. #CVE #Vulnerability #PatchNow https://t.co/ntCet302zj
Post summary
The tweet alerts to CVE‑2022‑32511, explains how unsafe JSON.load in jmespath.rb allows remote code execution, and urges immediate upgrade to v1.6.1+.
