CVE-2016-6316 | Ruby on Rails up to 3.2.22.2/4.2.7.0/5.0.0.0 Action View cross site scripting (RHSA-2016:1855 / Nessus ID 94081)
A vulnerability was found in Ruby on Rails up to 3.2.22.2/4.2.7.0/5.0.0.0 and classified as critical. Affected by this issue is some unknown functionality of the component Action View. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2016-6316. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.