CVE-2026-33170 | rails activesupport prior 7.2.3.1/8.0.4.1/8.1.2.1 html_unsafe cross site scripting (GHSA-89vf-4333-qx8v)
A vulnerability classified as problematic was found in rails activesupport. This affects the function html_unsafe. Such manipulation leads to cross site scripting.
This vulnerability is documented as CVE-2026-33170. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is advised.