Closed martijncasteel closed 7 years ago
I realize this is a year old, but in the interest of figuring this out I'd need to know what a command looked like before and after you fix.
FWIW, your fix is not secure. It allows for shell command injection with a specially crafted file name.
This is now well over a year old and has had plenty of time for feedback, so I'm going to close it. If it's still a problem, please resubmit.
Shell quotes not working
I'm not sure why, and it cost me a few days a year ago . But when trying to use paperclip and a processor for ghostscript I have to overwrite the shellquotes. I have found this fix on the internet and I believe it is used quite sometime. This week I updated a lot of gems and I was hoping that I good remove this dirty fix..
But unfortunately I get the dreaded NotIdentifiedByImageMagick error. But I scouerd the internet and found this which fixes my problem;
Well the upperpart is just that cocaine uses my interpolate but why is this still a problem using paperclip?