Site icon API Security Blog

Internet Bug Bounty: ActionView sanitize helper bypass with style and math

image
The Rails-html-sanitizer version 1.6.0 was affected by a vulnerability that could lead to a bypass of the sanitization process, resulting in potential cross-site scripting (XSS) attacks. The vulnerability was addressed in version…Read More

Exit mobile version