CVE-2012-6684
08.01.2015, 01:59
Cross-site scripting (XSS) vulnerability in the RedCloth library 4.2.9 for Ruby and earlier allows remote attackers to inject arbitrary web script or HTML via a javascript: URI.
| Vendor | Product | Version |
|---|---|---|
| redcloth | redcloth_library | 𝑥 ≤ 4.2.9 |
| debian | debian_linux | 7.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| redcloth |
| ||||||||||||||||||||||||||
| ruby-redcloth |
|
References