Sidekiq through 5.1.3 and 6.x through 6.2.0 allows XSS via the queue name of the live-poll feature when Internet Explorer is used.
{ "binaries": [ { "binary_version": "5.0.4+dfsg-2ubuntu0.1~esm1", "binary_name": "ruby-sidekiq" } ], "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro" }
{ "binaries": [ { "binary_version": "5.2.7+dfsg-1ubuntu0.1~esm1", "binary_name": "ruby-sidekiq" } ], "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro" }