pkg:RubyGems/phlex

3 total CVEsHIGH3

✅ Check your installed version

All known vulnerabilities

  • HIGH7.1CVE-2024-32970Phlex vulnerable to Cross-site Scripting (XSS) via maliciously formed HTML attribute names and values
    from 0, < 1.9.3
  • HIGH7.1CVE-2024-32463Cross-site Scripting (XSS) possible due to improper sanitisation of `href` attributes on `<a>` tags
    >= 1.10.0, < 1.10.1
  • HIGH7.1CVE-2024-28199Cross-site Scripting (XSS) possible with maliciously formed HTML attribute names and values in Phlex
    >= 1.9.0, < 1.9.1