Vendor
Chartkick Project
Products
1
CVEs
2
Across products
2
Status
Private
Products
1- 2 CVEs
Recent CVEs
2| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2020-16254 | Med | 0.33 | 6.1 | 0.01 | Aug 5, 2020 | The Chartkick gem through 3.3.2 for Ruby allows Cascading Style Sheets (CSS) Injection (without attribute). | ||
| CVE-2019-12732 | Med | 0.31 | 4.7 | 0.01 | Jun 6, 2019 | The Chartkick gem through 3.1.0 for Ruby allows XSS. |
- risk 0.33cvss 6.1epss 0.01
The Chartkick gem through 3.3.2 for Ruby allows Cascading Style Sheets (CSS) Injection (without attribute).
- risk 0.31cvss 4.7epss 0.01
The Chartkick gem through 3.1.0 for Ruby allows XSS.