In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsLearn about Cross-site Scripting (XSS) vulnerabilities in an interactive lesson.
Start learningUpgrade haml
to version 4.0.5 or higher.
haml
is a layer on top of HTML or XML that's designed to express the structure of documents in an elegant way.
Affected versions of the package are vulnerable to Cross-site Scripting (XSS). The haml_concat
does not have it's contents properly escaped, when used in the haml_tag
block.
<>