Логотип exploitDog
bind: "CVE-2024-47220"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2024-47220"

Количество 9

Количество 9

ubuntu логотип

CVE-2024-47220

11 месяцев назад

An issue was discovered in the WEBrick toolkit through 1.8.1 for Ruby. It allows HTTP request smuggling by providing both a Content-Length header and a Transfer-Encoding header, e.g., "GET /admin HTTP/1.1\r\n" inside of a "POST /user HTTP/1.1\r\n" request. NOTE: the supplier's position is "Webrick should not be used in production."

EPSS: Низкий
redhat логотип

CVE-2024-47220

11 месяцев назад

An issue was discovered in the WEBrick toolkit through 1.8.1 for Ruby. It allows HTTP request smuggling by providing both a Content-Length header and a Transfer-Encoding header, e.g., "GET /admin HTTP/1.1\r\n" inside of a "POST /user HTTP/1.1\r\n" request. NOTE: the supplier's position is "Webrick should not be used in production."

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2024-47220

11 месяцев назад

An issue was discovered in the WEBrick toolkit through 1.8.1 for Ruby. It allows HTTP request smuggling by providing both a Content-Length header and a Transfer-Encoding header, e.g., "GET /admin HTTP/1.1\r\n" inside of a "POST /user HTTP/1.1\r\n" request. NOTE: the supplier's position is "Webrick should not be used in production."

EPSS: Низкий
debian логотип

CVE-2024-47220

11 месяцев назад

An issue was discovered in the WEBrick toolkit through 1.8.1 for Ruby. ...

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3939-1

10 месяцев назад

Security update for ruby2.1

EPSS: Низкий
github логотип

GHSA-6f62-3596-g6w7

11 месяцев назад

HTTP Request Smuggling in ruby webrick

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0736-1

6 месяцев назад

Security update for ruby2.5

EPSS: Низкий
redos логотип

ROS-20250826-03

6 дней назад

Множественные уязвимости rubygem-webrick

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:1369-1

4 месяца назад

Security update for ruby2.5

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-47220

An issue was discovered in the WEBrick toolkit through 1.8.1 for Ruby. It allows HTTP request smuggling by providing both a Content-Length header and a Transfer-Encoding header, e.g., "GET /admin HTTP/1.1\r\n" inside of a "POST /user HTTP/1.1\r\n" request. NOTE: the supplier's position is "Webrick should not be used in production."

0%
Низкий
11 месяцев назад
redhat логотип
CVE-2024-47220

An issue was discovered in the WEBrick toolkit through 1.8.1 for Ruby. It allows HTTP request smuggling by providing both a Content-Length header and a Transfer-Encoding header, e.g., "GET /admin HTTP/1.1\r\n" inside of a "POST /user HTTP/1.1\r\n" request. NOTE: the supplier's position is "Webrick should not be used in production."

CVSS3: 7.5
0%
Низкий
11 месяцев назад
nvd логотип
CVE-2024-47220

An issue was discovered in the WEBrick toolkit through 1.8.1 for Ruby. It allows HTTP request smuggling by providing both a Content-Length header and a Transfer-Encoding header, e.g., "GET /admin HTTP/1.1\r\n" inside of a "POST /user HTTP/1.1\r\n" request. NOTE: the supplier's position is "Webrick should not be used in production."

0%
Низкий
11 месяцев назад
debian логотип
CVE-2024-47220

An issue was discovered in the WEBrick toolkit through 1.8.1 for Ruby. ...

0%
Низкий
11 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3939-1

Security update for ruby2.1

0%
Низкий
10 месяцев назад
github логотип
GHSA-6f62-3596-g6w7

HTTP Request Smuggling in ruby webrick

CVSS3: 7.5
0%
Низкий
11 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:0736-1

Security update for ruby2.5

6 месяцев назад
redos логотип
ROS-20250826-03

Множественные уязвимости rubygem-webrick

CVSS3: 7.5
6 дней назад
suse-cvrf логотип
SUSE-SU-2025:1369-1

Security update for ruby2.5

4 месяца назад

Уязвимостей на страницу