Lucene search

K
prionPRIOn knowledge basePRION:CVE-2007-3227
HistoryJun 14, 2007 - 11:30 p.m.

Cross site scripting

2007-06-1423:30:00
PRIOn knowledge base
www.prio-n.com
10

5.9 Medium

AI Score

Confidence

High

0.014 Low

EPSS

Percentile

86.5%

Cross-site scripting (XSS) vulnerability in the to_json (ActiveRecord::Base#to_json) function in Ruby on Rails before edge 9606 allows remote attackers to inject arbitrary web script via the input values.

CPENameOperatorVersion
railseq1.1.5

5.9 Medium

AI Score

Confidence

High

0.014 Low

EPSS

Percentile

86.5%