Ruby on Rails Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2011-1497 - Vulnerability Database

Ruby on Rails Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2011-1497

Medium
Reference: CVE-2011-1497
Title: Ruby on Rails Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Overview:

A cross-site scripting vulnerability flaw was found in the auto_link function in Rails before version 3.0.6.