[Bug 1095529] VUL-0: CVE-2018-11627: rubygem-sinatra: Sinatra before 2.0.2 has XSS via the 400 Bad Request page that occurs upon aparams parser exception.
http://bugzilla.suse.com/show_bug.cgi?id=1095529 http://bugzilla.suse.com/show_bug.cgi?id=1095529#c3 Alexandros Toptsoglou <atoptsoglou@suse.com> changed: What |Removed |Added ---------------------------------------------------------------------------- CC| |atoptsoglou@suse.com Component|Incidents |Security Version|unspecified |Leap 15.1 Product|SUSE Security Incidents |openSUSE Distribution Target Milestone|--- |Leap 15.1 QA Contact|security-team@suse.de |qa-bugs@suse.de --- Comment #3 from Alexandros Toptsoglou <atoptsoglou@suse.com> --- Leap 15.1 is affected reassigning back -- You are receiving this mail because: You are on the CC list for the bug.
participants (1)
-
bugzilla_noreply@novell.com