The papercrop gem before 0.3.0 for Ruby on Rails does not properly handle crop input. References https://nvd.nist.gov/vuln/detail/CVE-2015-2784 https://github.com/rsantamaria/papercrop/commit/b4ecd95debaf0a8712bd1d34def83f41fc6b3579 https://github.com/rsantamaria/papercrop/blob/master/CHANGELOG.md https://github.com/advisories/GHSA-m44r-gv6q-9j9r