CVE-2018-16468
EUVD-2018-075130.10.2018, 21:29
In the Loofah gem for Ruby, through v2.2.2, unsanitized JavaScript may occur in sanitized output when a crafted SVG element is republished.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| loofah_project | loofah | 𝑥 ≤ 2.2.2 |
| debian | debian_linux | 9.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| ruby-loofah |
|