Junglewise Threat Intelligence

CVE-2023-23627: Improper neutralization of `noscript` element content may allow XSS in Sanitize

CVE-2023-23627 · Severity: low · CVSS 3.1 · Published 2023-01-28

Technologies: sanitize (RubyGems). Vendors: RubyGems.

Executive brief

Improper neutralization of `noscript` element content may allow XSS in Sanitize

Affected products

  • RubyGems sanitize

Related threats