{"id":"DSA-1887-1","summary":"rails - cross-site scripting","modified":"2026-03-09T01:22:46.330074Z","published":"2009-09-15T00:00:00Z","upstream":["CVE-2009-3009","DEBIAN-CVE-2009-3009"],"affected":[{"package":{"name":"rails","ecosystem":"Debian:5.0","purl":"pkg:deb/debian/rails?arch=source"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.1.0-7"}]}],"versions":["2.1.0-6"],"database_specific":{"source":"https://storage.googleapis.com/debian-osv/dsa-osv/DSA-1887-1.json"}}],"schema_version":"1.7.3"}