RailsAdmin is a Rails engine that provides an interface for managing data. RailsAdmin list view has the XSS vulnerability, caused by improperly-escaped HTML title attribute. Upgrade to 3.1.3 or 2.2.2 (to be released).
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| rails_admin(RubyGems) | 3.0.0.beta | 3.1.3 | N/A |
CVSS Metrics