Rails XSS vulnerability Posted on 4 September 2009 by kosmas emailFacebookTwitterLinkedinProblem There was a warning about an XSS vulnerability in Ruby on Rails. More details can be found here. Solution Upgrade to the most recent (fixed) Rails version (2.3.4): sudo gem install rails