ruby-rack

Direct Vulnerabilities

Known vulnerabilities in the ruby-rack package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
CRLF Injection

*
  • L
Incorrect Behavior Order: Validate Before Canonicalize

*
  • L
Partial Comparison

*
  • L
Resource Exhaustion

*
  • M
Improper Validation of Syntactic Correctness of Input

*
  • L
Permissive Regular Expression

*
  • L
Interpretation Conflict

*
  • L
Resource Exhaustion

*
  • L
Interpretation Conflict

*
  • L
Resource Exhaustion

*
  • L
Improper Handling of Length Parameter Inconsistency

*
  • L
Permissive Regular Expression

*
  • L
Resource Exhaustion

*
  • L
Cross-site Scripting (XSS)

<3.1.20-0+deb13u1
  • L
Directory Traversal

<3.1.20-0+deb13u1
  • L
Resource Exhaustion

<3.1.18-1~deb13u1
  • M
Information Exposure

<3.1.18-1~deb13u1
  • L
Resource Exhaustion

<3.1.18-1~deb13u1
  • L
Resource Exhaustion

<3.1.18-1~deb13u1
  • L
Resource Exhaustion

<3.1.18-1~deb13u1
  • L
Resource Exhaustion

<3.0.8-2
  • M
Allocation of Resources Without Limits or Throttling

<3.1.16-0.1
  • M
Race Condition

<3.0.8-2
  • H
Resource Exhaustion

<3.1.16-0.1
  • L
Directory Traversal

<3.1.12-1
  • H
CRLF Injection

<3.1.12-1
  • M
CRLF Injection

<3.1.12-1
  • H
Inefficient Regular Expression Complexity

<2.2.7-1.1
  • H
Inefficient Regular Expression Complexity

<2.2.7-1.1
  • H
CVE-2024-26141

<2.2.7-1.1
  • M
CVE-2023-27539

<2.2.6.4-1
  • H
Allocation of Resources Without Limits or Throttling

<2.2.6.4-1
  • H
Inefficient Regular Expression Complexity

<2.2.4-3
  • H
Inefficient Regular Expression Complexity

<2.2.4-3
  • H
Inefficient Regular Expression Complexity

<2.2.4-3
  • H
Inefficient Regular Expression Complexity

<2.2.4-1
  • C
CVE-2022-30123

<2.2.4-1
  • H
Improper Input Validation

<2.1.1-6
  • H
Directory Traversal

<2.1.1-5
  • M
Information Exposure

<2.1.1-2
  • M
Cross-site Scripting (XSS)

<1.6.4-6
  • M
Improper Data Handling

<1.5.2-4
  • M
CVE-2013-0184

<1.4.1-2.1
  • M
CVE-2012-6109

<1.4.1-2.1
  • M
Out-of-Bounds

<1.4.1-2.1
  • M
CVE-2013-0263

<1.4.1-2.1
  • M
Directory Traversal

<1.4.1-2.1
  • M
Cryptographic Issues

<1.4.0-1