Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8r6h-7x9g-xmw9

Опубликовано: 24 окт. 2017
Источник: github
Github: Прошло ревью

Описание

will_paginate Cross-site Scripting vulnerability

Cross-site scripting (XSS) vulnerability in the will_paginate gem before 3.0.5 for Ruby allows remote attackers to inject arbitrary web script or HTML via vectors involving generated pagination links.

Пакеты

Наименование

will_paginate

rubygems
Затронутые версииВерсия исправления

< 3.0.5

3.0.5

EPSS

Процентиль: 52%
0.00292
Низкий

Дефекты

CWE-79

Связанные уязвимости

ubuntu
около 12 лет назад

Cross-site scripting (XSS) vulnerability in the will_paginate gem before 3.0.5 for Ruby allows remote attackers to inject arbitrary web script or HTML via vectors involving generated pagination links.

CVSS3: 4.3
redhat
около 12 лет назад

Cross-site scripting (XSS) vulnerability in the will_paginate gem before 3.0.5 for Ruby allows remote attackers to inject arbitrary web script or HTML via vectors involving generated pagination links.

nvd
около 12 лет назад

Cross-site scripting (XSS) vulnerability in the will_paginate gem before 3.0.5 for Ruby allows remote attackers to inject arbitrary web script or HTML via vectors involving generated pagination links.

debian
около 12 лет назад

Cross-site scripting (XSS) vulnerability in the will_paginate gem befo ...

EPSS

Процентиль: 52%
0.00292
Низкий

Дефекты

CWE-79