CVE-2026-107704 - image_optimizer 1.3.0 through 1.9.0 OS Command Injection via identify_format
CVE ID :CVE-2026-107704 Published : Oct. 8, 2026, 6:36 p.m. | 52 minutes ago Description :The image_optimizer Ruby gem 1.3.0 through 1.9.0 contains an OS command injection vulnerability in ImageOptimizer#identify_format that allows attackers to execute commands by supplying a crafted image...