CVE-2018-3740
CVE-2018-3740
A specially crafted HTML fragment can cause Sanitize gem for Ruby to allow non-whitelisted attributes to be used on a whitelisted HTML element.
Affected products
Ryan Grove · sanitize (ruby gem)Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →