CVE-2020-5267Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) in Rails Actionview

Severity
4.8MEDIUMNVD
CNA4.0
EPSS
0.9%
top 24.50%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 19
Latest updateMay 5

Description

In ActionView before versions 6.0.2.2 and 5.2.4.2, there is a possible XSS vulnerability in ActionView's JavaScript literal escape helpers. Views that use the `j` or `escape_javascript` methods may be susceptible to XSS attacks. The issue is fixed in versions 6.0.2.2 and 5.2.4.2.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:NExploitability: 1.7 | Impact: 2.7

Affected Packages5 packages

CVEListV5rails/actionview< 5.2.4.2+1
RubyGemsrails/actionview6.0.06.0.2.2+1
NVDrubyonrails/actionview6.0.06.0.2.2+1
Debianrubyonrails/rails< 2:5.2.4.1+dfsg-2+3
NVDopensuse/leap15.1

Also affects: Debian Linux 8.0, Fedora 33

Patches

🔴Vulnerability Details

4
OSV
Cross site scripting vulnerability in ActionView2020-03-19
OSV
CVE-2020-5267: In ActionView before versions 62020-03-19
CVEList
Possible XSS vulnerability in ActionView2020-03-19
GHSA
Cross site scripting vulnerability in ActionView2020-03-19

📋Vendor Advisories

2
Red Hat
rubygem-actionview: views that use the `j` or `escape_javascript` methods are susceptible to XSS attacks2020-03-19
Debian
CVE-2020-5267: rails - In ActionView before versions 6.0.2.2 and 5.2.4.2, there is a possible XSS vulne...2020

💬Community

3
Bugzilla
CVE-2020-5267 rubygem-actionview: views that use the `j` or `escape_javascript` methods are susceptible to XSS attacks [fedora-all]2020-05-05
Bugzilla
CVE-2020-5267 rubygem-actionview: views that use the `j` or `escape_javascript` methods are susceptible to XSS attacks [fedora-all]2020-05-05
Bugzilla
CVE-2020-5267 rubygem-actionview: views that use the `j` or `escape_javascript` methods are susceptible to XSS attacks2020-05-05
CVE-2020-5267 — Rails Actionview vulnerability | cvebase