Information on source package ruby-loofah

Available versions

ReleaseVersion
buster2.2.3-1+deb10u1
buster (security)2.2.3-1+deb10u2
bullseye2.7.0+dfsg-1
bookworm2.19.1-1
trixie2.22.0-1
sid2.22.0-1

Open issues

BugbusterbullseyebookwormtrixiesidDescription
CVE-2022-23516fixedvulnerable (no DSA)fixedfixedfixedLoofah is a general library for manipulating and transforming HTML/XML ...
CVE-2022-23515fixedvulnerable (no DSA)fixedfixedfixedLoofah is a general library for manipulating and transforming HTML/XML ...
CVE-2022-23514fixedvulnerable (no DSA)fixedfixedfixedLoofah is a general library for manipulating and transforming HTML/XML ...

Resolved issues

BugDescription
CVE-2019-15587In the Loofah gem for Ruby through v2.3.0 unsanitized JavaScript may o ...
CVE-2018-16468In the Loofah gem for Ruby, through v2.2.2, unsanitized JavaScript may ...
CVE-2018-8048In the Loofah gem through 2.2.0 for Ruby, non-whitelisted HTML attribu ...

Security announcements

DSA / DLADescription
DLA-3565-1ruby-loofah - security update
DSA-4554-1ruby-loofah - security update
DSA-4364-1ruby-loofah - security update
DSA-4171-1ruby-loofah - security update

Search for package or bug name: Reporting problems