Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 9

Количество 9

fstec логотип

BDU:2025-04293

больше 1 года назад

Уязвимость интерфейса модуля Rack интерпретатора языка программирования Ruby, позволяющая нарушителю оказать влияние на целостность защищаемой информации

CVSS3: 5.3
EPSS: Низкий
redos логотип

ROS-20250403-16

больше 1 года назад

Уязвимость rubygem-rack

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2025-27111

больше 1 года назад

Rack is a modular Ruby web server interface. The Rack::Sendfile middleware logs unsanitised header values from the X-Sendfile-Type header. An attacker can exploit this by injecting escape sequences (such as newline characters) into the header, resulting in log injection. This vulnerability is fixed in 2.2.12, 3.0.13, and 3.1.11.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2025-27111

больше 1 года назад

Rack is a modular Ruby web server interface. The Rack::Sendfile middleware logs unsanitised header values from the X-Sendfile-Type header. An attacker can exploit this by injecting escape sequences (such as newline characters) into the header, resulting in log injection. This vulnerability is fixed in 2.2.12, 3.0.13, and 3.1.11.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2025-27111

больше 1 года назад

Rack is a modular Ruby web server interface. The Rack::Sendfile middleware logs unsanitised header values from the X-Sendfile-Type header. An attacker can exploit this by injecting escape sequences (such as newline characters) into the header, resulting in log injection. This vulnerability is fixed in 2.2.12, 3.0.13, and 3.1.11.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2025-27111

больше 1 года назад

Rack is a modular Ruby web server interface. The Rack::Sendfile middle ...

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:1492-1

около 1 года назад

Security update for rubygem-rack-1_6

EPSS: Низкий
github логотип

GHSA-8cgq-6mh2-7j6v

больше 1 года назад

Escape Sequence Injection vulnerability in Rack lead to Possible Log Injection

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0874-1

больше 1 года назад

Security update for rubygem-rack

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2025-04293

Уязвимость интерфейса модуля Rack интерпретатора языка программирования Ruby, позволяющая нарушителю оказать влияние на целостность защищаемой информации

CVSS3: 5.3
1%
Низкий
больше 1 года назад
redos логотип
ROS-20250403-16

Уязвимость rubygem-rack

CVSS3: 5.3
1%
Низкий
больше 1 года назад
ubuntu логотип
CVE-2025-27111

Rack is a modular Ruby web server interface. The Rack::Sendfile middleware logs unsanitised header values from the X-Sendfile-Type header. An attacker can exploit this by injecting escape sequences (such as newline characters) into the header, resulting in log injection. This vulnerability is fixed in 2.2.12, 3.0.13, and 3.1.11.

CVSS3: 7.5
1%
Низкий
больше 1 года назад
redhat логотип
CVE-2025-27111

Rack is a modular Ruby web server interface. The Rack::Sendfile middleware logs unsanitised header values from the X-Sendfile-Type header. An attacker can exploit this by injecting escape sequences (such as newline characters) into the header, resulting in log injection. This vulnerability is fixed in 2.2.12, 3.0.13, and 3.1.11.

CVSS3: 5.3
1%
Низкий
больше 1 года назад
nvd логотип
CVE-2025-27111

Rack is a modular Ruby web server interface. The Rack::Sendfile middleware logs unsanitised header values from the X-Sendfile-Type header. An attacker can exploit this by injecting escape sequences (such as newline characters) into the header, resulting in log injection. This vulnerability is fixed in 2.2.12, 3.0.13, and 3.1.11.

CVSS3: 7.5
1%
Низкий
больше 1 года назад
debian логотип
CVE-2025-27111

Rack is a modular Ruby web server interface. The Rack::Sendfile middle ...

CVSS3: 7.5
1%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2025:1492-1

Security update for rubygem-rack-1_6

1%
Низкий
около 1 года назад
github логотип
GHSA-8cgq-6mh2-7j6v

Escape Sequence Injection vulnerability in Rack lead to Possible Log Injection

1%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0874-1

Security update for rubygem-rack

больше 1 года назад

Уязвимостей на страницу