CVE-2022-22577

All FrameworksRuby on RailsCWE-79CVE-2022-22577

CVE-2022-22577

State: PUBLISHED · Published: 2022-05-26 · Updated: 2024-08-03 · Assigner: hackerone
Description
An XSS Vulnerability in Action Pack >= 5.2.0 and < 5.2.0 that could allow an attacker to bypass CSP for non HTML like responses.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2022/22xxx/CVE-2022-22577.json