Server side cross-site scripting In ruby-kaminari
Description
In Kaminari before 1.2.1, there is a vulnerability that would allow an attacker to inject arbitrary code into pages with pagination links. This has been fixed in 1.2.1.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Component | Affected version | Patched versions |
|---|---|---|---|
debian 13 | 1.0.1-6 | ||
debian 12 | 1.0.1-6 | ||
rubygems | 1.2.1 | ||
debian 14 | 1.0.1-6 |
Aliases
1. 2. 3. 4. 5. 6. 7. 8.
References
1. 2. 3. 4. 5.