Medium severity6.4NVD Advisory· Published May 28, 2020· Updated Jun 17, 2026
CVE-2020-11082
CVE-2020-11082
Description
In Kaminari before 1.2.1, there is a vulnerability that would allow an attacker to inject arbitrary code into pages with pagination links. This has been fixed in 1.2.1.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
kaminariRubyGems | < 1.2.1 | 1.2.1 |
Affected products
5Patches
Vulnerability mechanics
References
8- github.com/kaminari/kaminari/commit/8dd52a1aed3d2fa2835d836de23fc0d8c4ff5db8nvdPatchThird Party AdvisoryWEB
- github.com/advisories/GHSA-r5jw-62xg-j433ghsaADVISORY
- github.com/kaminari/kaminari/security/advisories/GHSA-r5jw-62xg-j433nvdMitigationThird Party AdvisoryWEB
- lists.debian.org/debian-lts-announce/2021/09/msg00011.htmlnvdMailing ListThird Party AdvisoryWEB
- nvd.nist.gov/vuln/detail/CVE-2020-11082ghsaADVISORY
- www.debian.org/security/2021/dsa-5005nvdThird Party AdvisoryWEB
- github.com/github/advisory-review/pull/1020nvdBroken LinkWEB
- github.com/rubysec/ruby-advisory-db/blob/master/gems/kaminari/CVE-2020-11082.ymlghsaWEB
News mentions
0No linked articles in our index yet.