Home

Description

Cross Site Scripting vulnerability in Contribsys Sidekiq v.6.5.8 allows a remote attacker to obtain sensitive information via a crafted payload to the uniquejobs function.

PUBLISHED Reserved 2023-10-30 | Published 2024-03-01 | Updated 2025-04-22 | Assigner mitre

References

www.link.com

link.org

github.com/...e-jobs/security/advisories/GHSA-cmh9-rx85-xj38

www.link.com

link.org

github.com/...e-jobs/security/advisories/GHSA-cmh9-rx85-xj38

github.com/mhenrixon/sidekiq-unique-jobs/releases/tag/v8.0.7

www.mgm-sp.com/...eflected-xss-cve-2023-46950-cve-2023-46951

github.com/mhenrixon/sidekiq-unique-jobs/pull/829

cve.org (CVE-2023-46951)

nvd.nist.gov (CVE-2023-46951)

Download JSON