Lucene search

K
osvGoogleOSV:CVE-2020-5267
HistoryMar 19, 2020 - 6:15 p.m.

CVE-2020-5267

2020-03-1918:15:16
Google
osv.dev
10

AI Score

4.6

Confidence

High

EPSS

0.001

Percentile

46.9%

In ActionView before versions 6.0.2.2 and 5.2.4.2, there is a possible XSS vulnerability in ActionView’s JavaScript literal escape helpers. Views that use the j or escape_javascript methods may be susceptible to XSS attacks. The issue is fixed in versions 6.0.2.2 and 5.2.4.2.