In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsmapbox-rails integrates mapbox.js with the Rails asset pipeline.
mapbox.js is vulnerable to script content injection when L.mapbox.map
and L.mapbox.shareControl
is used to load untrusted TileJSON content from a non-Mapbox URL.
Such usage is uncommon. The following usage scenarios are not vulnerable: [1]
Related vulnerability: