VDB
Sign up
LOW3.5

GHSA-97wh-6hmj-g8j9

Spina Cross-site Scripting vulnerability

Quick fix

GHSA-97wh-6hmj-g8j9 — spina: upgrade to the fixed version with the command below.

bundle update spina

Details

Cross-site Scripting (XSS) - Stored in GitHub repository spinacms/spina prior to 2.15.1.

Are you affected?

Enter the version of the package you're using.

Affected packages

RubyGems/spina
Introduced in: 0Fixed in: 2.15.1
Fixbundle update spina

References