René's URL Explorer Experiment


Title: Cross-site Scripting (XSS) in actionpack | CVE-2023-28362 | Snyk

Open Graph Title: Snyk Vulnerability Database | Snyk

X Title: Cross-site Scripting (XSS) in actionpack | CVE-2023-28362 | Snyk

Description: Medium severity (4.7) Cross-site Scripting (XSS) in actionpack | CVE-2023-28362

Open Graph Description: Medium severity (4.7) Cross-site Scripting (XSS) in actionpack | CVE-2023-28362

X Description: Medium severity (4.7) Cross-site Scripting (XSS) in actionpack | CVE-2023-28362

Mail addresses
contact@snyk.io
support@snyk.io

Opengraph URL: https://security.snyk.io/vuln/SNYK-RUBY-ACTIONPACK-5741907

X: @snyksec

direct link

Domain: snyk.io


Hey, it has json ld scripts:
{"@context":"http://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"item":{"name":"Snyk Vulnerability Database","@id":"https://security.snyk.io/vuln"}},{"@type":"ListItem","position":2,"item":{"name":"RubyGems","@id":"https://security.snyk.io/vuln/rubygems"}},{"@type":"ListItem","position":3,"item":{"name":"actionpack"}}]}
{"@context":"https://schema.org","@graph":[{"@type":"FAQPage","inLanguage":"en-US","mainEntity":[{"@type":"Question","name":"How to fix?","acceptedAnswer":{"@type":"Answer","text":"\u003Cp>Upgrade \u003Ccode>actionpack\u003C/code> to version 6.1.7.4, 7.0.5.1 or higher.\u003C/p>\n"}}]}]}

Noneie=edge
og:localeen_US
og:typewebsite
og:site_nameLearn more about RubyGems with Snyk Open Source Vulnerability Database
og:imagehttps://res.cloudinary.com/snyk/image/upload/security-preview.png
og:image:width1200
og:image:height630
og:image:altSnyk Vulnerability Database
og:image:typeimage/png
twitter:cardsummary_large_image
twitter:creator@snyksec

Links:

https://snyk.io/
Snyk Vulnerability Databasehttps://snyk.io/vuln
RubyGemshttps://snyk.io/vuln/rubygems
actionpackhttps://snyk.io/package/rubygems/actionpack
Learn morehttps://snyk.io/vuln/SNYK-RUBY-ACTIONPACK-5741907#cvss
documentationhttps://www.first.org/epss/articles/prob_percentile_bins
Test your applicationshttps://app.snyk.io/login?cta=sign-up&loc=banner&page=vuln-vuln
Start learning https://learn.snyk.io/lesson/dom-based-xss/
Report a new vulnerabilityhttps://snyk.io/vulnerability-disclosure/
Found a mistake? https://support.snyk.io/s/contactsupport
CVE-2023-28362  (opens in a new tab) https://www.cve.org/CVERecord?id=CVE-2023-28362
CWE-79  (opens in a new tab) https://cwe.mitre.org/data/definitions/79.html
GitHub Commithttps://github.com/rails/rails/commit/69e37c84e3f77d75566424c7d0015172d6a6fac5
Ruby On Rails Advisoryhttps://discuss.rubyonrails.org/t/cve-2023-28362-possible-xss-via-user-supplied-values-to-redirect-to/83132
Partnershttps://snyk.io/partners
Developers & Devops Features https://snyk.io/product/dev-security/
Enterprise Features https://snyk.io/product/enterprise/
Pricinghttps://snyk.io/plans/
Test with GitHubhttps://snyk.io/test/
Test with CLIhttps://docs.snyk.io/snyk-cli
API statushttps://status.snyk.io/
Vulnerability DBhttps://security.snyk.io/
Bloghttps://snyk.io/blog/
Documentationhttps://docs.snyk.io/
FAQshttps://support.snyk.io/
Abouthttps://snyk.io/about
Jobshttps://snyk.io/careers/
Legal terms https://snyk.io/policies/terms-of-service/
Privacyhttps://snyk.io/policies/privacy/
Press kithttps://snyk.io/press-kit/
Eventshttps://snyk.io/events
Report a new vuln https://snyk.io/vulnerability-disclosure
https://x.com/snyksec
https://www.youtube.com/@Snyksec
https://www.facebook.com/snyksec
https://www.linkedin.com/company/snyk
https://github.com/Snyk/
https://www.npmjs.com/package/snyk
https://www.devseccon.com/the-secure-developer-podcast/

Viewport: width=device-width, initial-scale=1

Robots: index, follow, max-image-preview:large, max-snippet:-1, max-video-preview:-1


URLs of crawlers that visited me.