Lucene search

K
osvGoogleOSV:USN-4561-1
HistorySep 30, 2020 - 7:08 p.m.

ruby-rack vulnerabilities

2020-09-3019:08:21
Google
osv.dev
1

7.1 High

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

64.5%

It was discovered that Rack incorrectly handled certain paths. An attacker
could possibly use this issue to obtain sensitive information.
(CVE-2020-8161)

It was discovered that Rack incorrectly validated cookies. An attacker
could possibly use this issue to forge a secure cookie. (CVE-2020-8184)