Description
Action Text brings rich text content and editing to Rails. Instances of ActionText::Attachable::ContentAttachment included within a rich_text_area tag could potentially contain unsanitized HTML. This vulnerability is fixed in 7.1.3.4 and 7.2.0.beta2.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-2127 | Action Text brings rich text content and editing to Rails. Instances of ActionText::Attachable::ContentAttachment included within a rich_text_area tag could potentially contain unsanitized HTML. This vulnerability is fixed in 7.1.3.4 and 7.2.0.beta2. |
Github GHSA |
GHSA-prjp-h48f-jgf6 | ActionText ContentAttachment can Contain Unsanitized HTML |
References
History
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-08-02T02:13:39.964Z
Reserved: 2024-04-12T19:41:51.165Z
Link: CVE-2024-32464
Updated: 2024-08-02T02:13:39.964Z
Status : Modified
Published: 2024-06-04T20:15:11.247
Modified: 2024-11-21T09:14:58.127
Link: CVE-2024-32464
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA