I18N Project I18N vulnerabilities
3 known vulnerabilities affecting i18n_project/i18n.
Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2020-7791P3HIGHCVSS 7.5fixed in 2.1.15≥ unspecified, < 2.1.152020-12-11
CVE-2020-7791 [HIGH] CVE-2020-7791: This affects the package i18n before 2.1.15. Vulnerability arises out of insufficient handling of er
This affects the package i18n before 2.1.15. Vulnerability arises out of insufficient handling of erroneous language tags in src/i18n/Concrete/TextLocalizer.cs and src/i18n/LocalizedApplication.cs.
ghsanvdosv
CVE-2014-10077P4HIGHCVSS 7.5fixed in 0.8.02018-11-06
CVE-2014-10077 [HIGH] CWE-20 CVE-2014-10077: Hash#slice in lib/i18n/core_ext/hash.rb in the i18n gem before 0.8.0 for Ruby allows remote attacker
Hash#slice in lib/i18n/core_ext/hash.rb in the i18n gem before 0.8.0 for Ruby allows remote attackers to cause a denial of service (application crash) via a call in a situation where :some_key is present in keep_keys but not present in the hash.
ghsanvdosv
CVE-2013-4492P4MEDIUMCVSS 4.3≤ 0.6.52013-12-07
CVE-2013-4492 [MEDIUM] CWE-79 CVE-2013-4492: Cross-site scripting (XSS) vulnerability in exceptions.rb in the i18n gem before 0.6.6 for Ruby allo
Cross-site scripting (XSS) vulnerability in exceptions.rb in the i18n gem before 0.6.6 for Ruby allows remote attackers to inject arbitrary web script or HTML via a crafted I18n::MissingTranslationData.new call.
ghsanvdosv