CVE-2018-3740

Priority
Description
A specially crafted HTML fragment can cause Sanitize gem for Ruby to allow
non-whitelisted attributes to be used on a whitelisted HTML element.
Notes
Package
Upstream:released (4.6.5-1, 4.6.6-1)
Ubuntu 18.04 LTS:released (2.1.0-2+deb9u1build0.18.04.1)
Ubuntu 14.04 ESM:DNE
Patches:
More Information

Updated: 2022-04-13 13:32:28 UTC (commit f411bd370d482ef4385c4e751d121a4055fbc009)