CVE-2013-6459
31.12.2013, 16:04
Cross-site scripting (XSS) vulnerability in the will_paginate gem before 3.0.5 for Ruby allows remote attackers to inject arbitrary web script or HTML via vectors involving generated pagination links.
| Vendor | Product | Version |
|---|---|---|
| mislav_marohnic | will_paginate | 𝑥 ≤ 3.0.4 |
| mislav_marohnic | will_paginate | 3.0 |
| mislav_marohnic | will_paginate | 3.0.1 |
| mislav_marohnic | will_paginate | 3.0.2 |
| mislav_marohnic | will_paginate | 3.0.3 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| libwill-paginate-ruby |
| ||||||||||||||||||||||||
| ruby-will-paginate |
|
References