Loading...
Loading...
Cross-site scripting (XSS) vulnerability in actionpack/lib/action_view/helpers/sanitize_helper.rb in the strip_tags helper in Ruby on Rails before 3.0.17, 3.1.x before 3.1.8, and 3.2.x before 3.2.8 allows remote attackers to inject arbitrary web script or HTML via malformed HTML markup.
August 10, 2012
April 29, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2012-3465
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.