LinuxQuestions.org
Download your favorite Linux distribution at LQ ISO.
Go Back   LinuxQuestions.org > Forums > LinuxQuestions.org > Linux - News > Syndicated Linux News
User Name
Password
Syndicated Linux News This forum is for the discussion of Syndicated Linux News stories.

Notices

Reply
 
Search this Thread
Old 01-01-2014, 03:44 AM   #1
LXer
LXer NewsBot
 
Registered: Dec 2005
Posts: 75,772

Rep: Reputation: 87
LXer: Debian: 2830-1: ruby-i18n: cross-site scripting


Published at LXer:

Peter McLarnan discovered that the internationalization component of Ruby on Rails does not properly encode parameters in generated HTML code, resulting in a cross-site scripting vulnerability. This update corrects the underlying vulnerability in the i18n gem, as provided by the ruby-i18n package.

Read More...
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
LXer: Add Ruby scripting to your Project Zero LXer Syndicated Linux News 0 10-06-2007 03:10 PM
Cross Site Scripting - Apache illiadum Linux - Security 1 08-28-2007 02:26 PM
LXer: Hot skills: could Ruby be the jewel in the crown of scripting? LXer Syndicated Linux News 0 05-30-2006 11:33 AM
LXer: Title: phpLDAPadmin Cross-Site Scripting and Script Insertion LXer Syndicated Linux News 0 04-26-2006 05:54 PM
cross site scripting - best method? lunardreamr Programming 1 09-26-2003 12:18 PM


All times are GMT -5. The time now is 12:31 AM.

Main Menu
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration