CVE-2017-14506
25.09.2017, 08:29
geminabox (aka Gem in a Box) before 0.13.6 has XSS, as demonstrated by uploading a gem file that has a crafted gem.homepage value in its .gemspec file.
Vendor | Product | Version |
---|---|---|
geminabox_project | geminabox | 𝑥 ≤ 0.13.5 |
𝑥
= Vulnerable software versions
References