A sequence injection vulnerability exists in Rack <2.0.9.1, <2.1.4.1 and <2.2.3.1 which could allow is a possible shell escape in the Lint and CommonLogger components of Rack.
2022-12-05T22:15:10.280
2024-11-21T07:02:12.290
Modified
CVSSv3.1: 10.0 (CRITICAL)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | rack_project | rack | < 2.0.9.1 | Yes |
Application | rack_project | rack | < 2.1.4.1 | Yes |
Application | rack_project | rack | < 2.2.3.1 | Yes |
Operating System | debian | debian_linux | 11.0 | Yes |