Ruby on Rails rails-html-sanitizer Multple Cross Site Scripting Vulnerabilities

Bugtraq ID: 81802
Class: Input Validation Error
CVE: CVE-2015-7578
CVE-2015-7580
Remote: Yes
Local: No
Published: Jan 25 2016 12:00AM
Updated: Jan 25 2016 12:00AM
Credit: Ben Murphy, Marien, Arnaud Germis, Nate Clark and John Colvin
Vulnerable: Ruby on Rails rails-html-sanitizer 1.0.2
Ruby on Rails rails-html-sanitizer 1.0.1
Ruby on Rails rails-html-sanitizer 1.0
Not Vulnerable: Ruby on Rails rails-html-sanitizer 1.0.3


 

Privacy Statement
Copyright 2010, SecurityFocus