CVE-2012-1099 | Ruby on Rails up to 3.0.3 form_options_helper.rb cross site scripting (Bug 799276 / Nessus ID 59060)
A vulnerability was found in Ruby on Rails up to 3.0.3. It has been rated as problematic. Affected by this issue is some unknown functionality in the library actionpack/lib/action_view/helpers/form_options_helper.rb. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2012-1099. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.