VDB
Sign up
HIGH7.7

GHSA-3jqw-vv45-mjhh

XSS/Script injection vulnerability in matestack

Quick fix

GHSA-3jqw-vv45-mjhh — matestack-ui-core: upgrade to the fixed version with the command below.

bundle update matestack-ui-core

Details

matestack-ui-core (RubyGem) before 0.7.4 is vulnerable to XSS/Script injection.

This vulnerability is patched in version 0.7.4.

Are you affected?

Enter the version of the package you're using.

Affected packages

RubyGems/matestack-ui-core
Introduced in: 0Fixed in: 0.7.4
Fixbundle update matestack-ui-core

References