
CVE-2026-41493 YARD is a Ruby Documentation tool. Prior to version 0.9.42, a path traversal vulnerability was discovered in YARD when using yard server to serve documentation. This … https://www.cve.org/CVERecord?id=CVE-2026-41493
Post summary
The post announces a path traversal vulnerability in YARD prior to v0.9.42, with no exploit code, active use, or patch details provided.
