vulnerability

FreeBSD: VID-9db93f3d-c725-11ec-9618-000d3ac47524 (CVE-2022-27777): Rails -- XSS vulnerabilities

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:P/A:N)
Published
Apr 30, 2022
Added
Nov 4, 2022
Modified
Dec 10, 2025

Description

Ruby on Rails blog: This is an announcement to let you know that Rails 7.0.2.4, 6.1.5.1, 6.0.4.8, and 5.2.7.1 have been released! These are security releases so please update as soon as you can. Once again we've made these releases based on the last release tag, so hopefully upgrading will go smoothly. The releases address two vulnerabilities, CVE-2022-22577, and CVS-2022-27777. They are both XSS vulnerabilities, so please take a look at the forum posts to see how (or if) they might possibly impact your application.

Solutions

freebsd-upgrade-package-rubygem-actionpack52freebsd-upgrade-package-rubygem-actionpack60freebsd-upgrade-package-rubygem-actionpack61freebsd-upgrade-package-rubygem-actionpack70freebsd-upgrade-package-rubygem-actionview52freebsd-upgrade-package-rubygem-actionview60freebsd-upgrade-package-rubygem-actionview61freebsd-upgrade-package-rubygem-actionview70
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.