CVE-2013-2617
lib/curl.rb in the Curl Gem for Ruby allows remote attackers to execute arbitrary commands via shell metacharacters in a URL.
Date published : 2013-03-20
http://seclists.org/fulldisclosure/2013/Mar/124
http://packetstormsecurity.com/files/120778/Ruby-Gem-Curl-Command-Execution.html