CVE-2013-4492 PUBLISHED

Cross-site scripting (XSS) vulnerability in exceptions.rb in the i18n gem before 0.6.6 for Ruby allows remote attackers to inject arbitrary web script or HTML via a crafted I18n::MissingTranslationData.new call.

EPSS 0.44% · 63.2th percentile

Risk Scores

EPSS Score
0.44%
63.2th percentile

Affected Products

VendorProductVersions
Ubuntu:24.04:LTSruby-i18n1.14.1-1, 0, 1.10.0-2
Ubuntu:22.04:LTSruby-i18n1.8.10-1, 1.8.11-1, 0
Ubuntu:16.04:LTSruby-i18n0.6.11-2, 0.7.0-2, 0
Ubuntu:Pro:14.04:LTSruby-i18n0.6.9-1, 0.6.5-1, 0.6.4-1
Ubuntu:25.10ruby-i18n1.14.7-1, 0
Ubuntu:18.04:LTSruby-i18n0.7.0-2, 0
Ubuntu:20.04:LTSruby-i18n1.5.3-1, 0, 1.8.2-2

Timeline

References

Open in Interactive Console →