ruby-rack vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the ruby-rack package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
Cross-site Scripting (XSS)

*
  • L
Directory Traversal

*
  • L
Resource Exhaustion

<2.1.4-3+deb11u4
  • M
Information Exposure

<2.1.4-3+deb11u4
  • L
Resource Exhaustion

<2.1.4-3+deb11u4
  • L
Resource Exhaustion

<2.1.4-3+deb11u4
  • L
Resource Exhaustion

<2.1.4-3+deb11u4
  • L
Resource Exhaustion

<2.1.4-3+deb11u4
  • H
Resource Exhaustion

<2.1.4-3+deb11u4
  • M
Race Condition

<2.1.4-3+deb11u4
  • L
Directory Traversal

<2.1.4-3+deb11u3
  • H
CRLF Injection

<2.1.4-3+deb11u3
  • M
CRLF Injection

<2.1.4-3+deb11u3
  • H
Inefficient Regular Expression Complexity

<2.1.4-3+deb11u2
  • H
CVE-2024-26141

<2.1.4-3+deb11u2
  • H
Inefficient Regular Expression Complexity

<2.1.4-3+deb11u2
  • M
CVE-2023-27539

<2.1.4-3+deb11u1
  • H
Allocation of Resources Without Limits or Throttling

<2.1.4-3+deb11u1
  • H
Inefficient Regular Expression Complexity

<2.1.4-3+deb11u1
  • H
Inefficient Regular Expression Complexity

<2.1.4-3+deb11u1
  • H
Inefficient Regular Expression Complexity

<2.1.4-3+deb11u1
  • H
Inefficient Regular Expression Complexity

<2.1.4-3+deb11u1
  • C
CVE-2022-30123

<2.1.4-3+deb11u1
  • H
Improper Input Validation

<2.1.1-6
  • H
Directory Traversal

<2.1.1-5
  • M
Information Exposure

<2.1.1-2
  • M
Cross-site Scripting (XSS)

<1.6.4-6
  • M
Improper Data Handling

<1.5.2-4
  • M
CVE-2013-0184

<1.4.1-2.1
  • M
CVE-2012-6109

<1.4.1-2.1
  • M
Out-of-Bounds

<1.4.1-2.1
  • M
CVE-2013-0263

<1.4.1-2.1
  • M
Directory Traversal

<1.4.1-2.1
  • M
Cryptographic Issues

<1.4.0-1