6.1
CVSSv3

CVE-2016-6316

Published: 07/09/2016 Updated: 07/11/2023
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in Action View in Ruby on Rails 3.x prior to 3.2.22.3, 4.x prior to 4.2.7.1, and 5.x prior to 5.0.0.1 might allow remote malicious users to inject arbitrary web script or HTML via text declared as "HTML safe" and used as attribute values in tag handlers.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

rubyonrails ruby on rails 3.2.14

rubyonrails ruby on rails 3.2.15

rubyonrails ruby on rails 4.1.14.1

rubyonrails ruby on rails 3.2.22.1

rubyonrails ruby on rails 4.0.13

rubyonrails ruby on rails 4.0.12

rubyonrails ruby on rails 4.0.10

rubyonrails ruby on rails 5.0.0

rubyonrails ruby on rails 3.2.19

rubyonrails ruby on rails 4.0.11.1

rubyonrails ruby on rails 4.0.11

rubyonrails ruby on rails 4.1.11

rubyonrails ruby on rails 3.2.22

rubyonrails ruby on rails 3.2.20

rubyonrails ruby on rails 3.0.4

rubyonrails rails 3.0.0

rubyonrails rails 4.0.0

rubyonrails rails 4.0.1

rubyonrails rails 4.0.2

rubyonrails rails 4.0.6

rubyonrails rails 4.1.0

rubyonrails rails 4.1.2

rubyonrails rails 4.1.6

rubyonrails rails 4.1.9

rubyonrails rails 4.1.10

rubyonrails rails 4.1.12

rubyonrails rails 4.1.13

rubyonrails rails 4.1.14

rubyonrails rails 4.1.15

rubyonrails rails 4.1.16

rubyonrails rails 4.2.0

rubyonrails rails 4.2.1

rubyonrails rails 4.2.3

rubyonrails rails 4.2.4

rubyonrails rails 4.2.5

rubyonrails rails 4.2.6

rubyonrails rails 4.2.7

rubyonrails rails 5.0.0

rubyonrails rails 4.0.7

rubyonrails rails 4.0.8

rubyonrails rails 4.0.9

rubyonrails rails 4.1.1

rubyonrails rails 4.1.3

rubyonrails rails 4.1.4

rubyonrails rails 4.1.5

rubyonrails rails 4.1.7

rubyonrails rails 4.1.7.1

rubyonrails rails 4.1.8

rubyonrails rails 4.2.2

rubyonrails rails 4.2.5.1

rubyonrails rails 4.2.5.2

rubyonrails rails 3.0.10

rubyonrails rails 3.0.12

rubyonrails rails 3.0.13

rubyonrails rails 3.1.0

rubyonrails rails 3.1.1

rubyonrails rails 3.1.2

rubyonrails rails 3.1.4

rubyonrails rails 3.1.5

rubyonrails rails 3.2.0

rubyonrails rails 3.2.7

rubyonrails rails 3.2.8

rubyonrails rails 3.2.9

rubyonrails rails 3.2.13

rubyonrails rails 3.2.15

rubyonrails rails 4.0.4

rubyonrails rails 3.0.1

rubyonrails rails 3.0.2

rubyonrails rails 3.0.3

rubyonrails rails 3.0.11

rubyonrails rails 3.0.14

rubyonrails rails 3.0.16

rubyonrails rails 3.0.17

rubyonrails rails 3.0.18

rubyonrails rails 3.0.19

rubyonrails rails 3.0.20

rubyonrails rails 3.1.3

rubyonrails rails 3.1.6

rubyonrails rails 3.1.7

rubyonrails rails 3.1.8

rubyonrails rails 3.1.9

rubyonrails rails 3.1.10

rubyonrails rails 3.1.12

rubyonrails rails 3.2.1

rubyonrails rails 3.2.5

rubyonrails rails 3.2.6

rubyonrails rails 3.2.10

rubyonrails rails 3.2.11

rubyonrails rails 3.2.12

rubyonrails rails 3.2.16

rubyonrails rails 3.2.17

rubyonrails rails 3.2.18

rubyonrails rails 3.2.21

rubyonrails rails 3.2.22.2

rubyonrails rails 4.0.3

rubyonrails rails 4.0.5

rubyonrails rails 4.1.14.2

rubyonrails rails 3.0.4

rubyonrails rails 3.0.5

rubyonrails rails 3.0.6

rubyonrails rails 3.0.7

rubyonrails rails 3.0.8

rubyonrails rails 3.0.9

rubyonrails rails 3.2.2

rubyonrails rails 3.2.3

rubyonrails rails 3.2.4

rubyonrails rails 4.0.10

debian debian linux 8.0

Vendor Advisories

Debian Bug report logs - #834155 rails: CVE-2016-6316: Possible XSS Vulnerability in Action View Package: src:rails; Maintainer for src:rails is Debian Ruby Extras Maintainers <pkg-ruby-extras-maintainers@listsaliothdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Fri, 12 Aug 2016 15:21:02 UT ...
Debian Bug report logs - #834154 rails: CVE-2016-6317: unsafe query generation in Active Record Package: src:rails; Maintainer for src:rails is Debian Ruby Extras Maintainers <pkg-ruby-extras-maintainers@listsaliothdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Fri, 12 Aug 2016 15:15:11 UTC ...
Andrew Carpenter of Critical Juncture discovered a cross-site scripting vulnerability affecting Action View in rails, a web application framework written in Ruby Text declared as HTML safe will not have quotes escaped when used as attribute values in tag helpers For the stable distribution (jessie), this problem has been fixed in version 2:418- ...
It was discovered that Action View tag helpers did not escape quotes when using strings declared as HTML safe as attribute values A remote attacker could use this flaw to conduct a cross-site scripting (XSS) attack ...