CVE-2013-4492

I18n < 0.6.5 - XSS

Title source: rule

Description

Cross-site scripting (XSS) vulnerability in exceptions.rb in the i18n gem before 0.6.6 for Ruby allows remote attackers to inject arbitrary web script or HTML via a crafted I18n::MissingTranslationData.new call.

Scores

EPSS 0.0044
EPSS Percentile 63.2%

Details

CWE
CWE-79
Status published
Products (3)
i18n_project/i18n < 0.6.5
rubygems/i18n < 0.6.6RubyGems
n/a/n/a
Published Dec 07, 2013
Tracked Since Feb 18, 2026