Akira Matsuda

1 exploit Active since Jan 2025
CVE-2023-28120 WRITEUP MEDIUM WRITEUP
ActiveSupport 7.0.0-7.0.4.2 and 6.1.7.3 - Cross-Site Scripting via SafeBuffer bytesplice
There is a vulnerability in ActiveSupport if the new bytesplice method is called on a SafeBuffer with untrusted user input.
CVSS 5.3