RubySec

Providing security resources for the Ruby community

OSVDB-126329 (sidekiq-pro): Sidekiq Pro Gem for Ruby web/views/batch.erb Class and ErrorMessage Elements Reflected XSS

Sidekiq Pro Gem for Ruby web/views/batch.erb Class and ErrorMessage Elements Reflected XSS

Published: May 11, 2015

SECURITY IDENTIFIERS

GEM

sidekiq-pro

PATCHED VERSIONS

>= 2.0.2

DESCRIPTION

XSS via batch failure error_class and error_message in Sidekiq::Web

RELATED