Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2023-28362

16
FAUCET Score

CVE-2023-28362 is a medium-severity vulnerability affecting the redirect_to method in Rails, allowing non-compliant characters in HTTP Location headers. This could lead to downstream services removing the header, potentially disrupting redirects. With a CVSS score of 4.0, it has a low attack complexity and impacts integrity, but there is no evidence of active exploitation, public exploit code, or significant community discussion.

Impacted Technologies

VendorProductVersion(s)CPE
RailsAction Pack
>= 6.1.7.4, < 6.1.7.4, >= 7.0.5.1, < 7.0.5.1CNA affecteddefault unaffected

CVSS Data

CVSS version used by this source: 3.1

4.0MEDIUM

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
LOW
Availability Impact
NONE
Exploitability Score
2.5
Impact Score
1.4
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.33%
Probability of exploitation in next 30 days
EPSS Percentile
25.6%
Percentile rank of EPSS score among Peer Group
As of 2026-07-25
Model: v2026.06.15
This CVE's current EPSS score of 0.0033 is in the 36th percentile among its peer group of 3,048 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (5)

redhatpatch availablevia redhat_api
Product: Red Hat Satellite 6.14 for RHEL 8Fixed in: rubygem-actionpack-0:6.1.7.4-1.el8sat
View patch
rubygemspatch availablevia ghsa
Product: actionpackFixed in: 6.1.7.4
rubygemspatch availablevia ghsa
Product: actionpackFixed in: 7.0.5.1
redhatno patchvia redhat_api
Product: Red Hat 3scale API Management Platform 2Fixed in: 3scale-amp-zync-container
redhatend of lifevia redhat_api
Product: Red Hat 3scale API Management Platform 2Fixed in: 3scale-amp-system-container

Vendor Advisories (2)

rubygemsGHSA-4g8v-vg43-wpgfmedium

Actionpack has possible cross-site scripting vulnerability via User Supplied Values to redirect_to

Jun 29, 2023
redhatCVE-2023-28362Moderate

actionpack: Possible XSS via User Supplied Values to redirect_to

Jun 27, 2023

References

security.netapp.com / advisory/ntap-20250502-0009
discuss.rubyonrails.org / t/cve-2023-28362-possible-xss-via-user-supplied-values-to-redirect-to/83132
github.com / advisories/GHSA-4g8v-vg43-wpgf
github.com / rails/rails/commit/1c3f93d1e90a3475f9ae2377ead25ccf11f71441
github.com / rails/rails/commit/69e37c84e3f77d75566424c7d0015172d6a6fac5