Bug 1302021 (CVE-2015-7580) - CVE-2015-7580 rubygem-rails-html-sanitizer: Possible XSS vulnerability in the white list sanitizer
Summary: CVE-2015-7580 rubygem-rails-html-sanitizer: Possible XSS vulnerability in the...
Keywords:
Status: CLOSED ERRATA
Alias: CVE-2015-7580
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Red Hat Product Security
QA Contact:
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2016-01-26 14:26 UTC by Adam Mariš
Modified: 2021-10-21 00:49 UTC (History)
3 users (show)

Fixed In Version: rubygem-rails-html-sanitizer 1.0.3
Clone Of:
Environment:
Last Closed: 2021-10-21 00:49:39 UTC
Embargoed:


Attachments (Terms of Use)

Description Adam Mariš 2016-01-26 14:26:58 UTC
XSS vulnerability in the white list sanitizer in the rails-html-sanitizer gem was reported. Carefully crafted strings can cause user input to bypass the sanitization in the white list sanitizer which will can lead to an XSS attack.

External References:

https://groups.google.com/forum/#!msg/rubyonrails-security/uh--W4TDwmI/m_CVZtdbFQAJ
http://weblog.rubyonrails.org/2016/1/25/Rails-5-0-0-beta1-1-4-2-5-1-4-1-14-1-3-2-22-1-and-rails-html-sanitizer-1-0-3-have-been-released/


Note You need to log in before you can comment on or make changes to this bug.