Security Advisory
CVE-2020-16254
6.1
MEDIUM
Vulnerability Description
The Chartkick gem through 3.3.2 for Ruby allows Cascading Style Sheets (CSS) Injection (without attribute).
Published Date
August 5, 2020
Official Source
NIST NVD Advisory