VYPR

RubyGems package

pay

pkg:gem/pay

Vulnerabilities (1)

  • CVE-2023-30614Apr 19, 2023
    affected < 6.3.2fixed 6.3.2

    Pay is a payments engine for Ruby on Rails 6.0 and higher. In versions prior to 6.3.2 a payments info page of Pay is susceptible to reflected Cross-site scripting. An attacker could create a working URL that renders a javascript link to a user on a Rails application that integrat