GHSA-9vc2-p34x-jhxh – rack
Package
Manager: gem
Name: rack
Vulnerable Version: <0
Severity
Level: Medium
CVSS v3.1: N/A
CVSS v4.0: N/A
EPSS: N/A pctlN/A
Details
Moderate severity vulnerability that affects rack Withdrawn, accidental duplicate publish. lib/rack/utils.rb in Rack before 1.5.4 and 1.6.x before 1.6.2, as used with Ruby on Rails 3.x and 4.x and other products, allows remote attackers to cause a denial of service (SystemStackError) via a request with a large parameter depth.
Metadata
Created: 2018-09-17T21:56:30Z
Modified: 2020-06-16T21:54:47Z
Source: https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2018/09/GHSA-9vc2-p34x-jhxh/GHSA-9vc2-p34x-jhxh.json
CWE IDs: []
Alternative ID: N/A
Finding: N/A
Auto approve: 0