A Cross-Site-Scripting vulnerability was found in rubygem ActiveSupport. If the new bytesplice method is called on a SafeBuffer with untrusted user input, malicious code could be executed.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
No data.
Vulnrichment
No data.
NVD
No data.
Redhat