HIGH 8.6 RubyGems

Directory traversal in Rack::Directory app bundled with Rack

GHSA-5f9h-9pjv-v6j7 · CVE-2020-8161

Published · Modified

AI SAST

Find this class of vulnerability in your own code

Corgea's AI-native static analysis detects vulnerabilities like this one across your repositories, ranks them by exploitability, and returns review-ready fixes.

Description

A directory traversal vulnerability exists in rack < 2.2.0 that allows an attacker perform directory traversal vulnerability in the Rack::Directory app that is bundled with Rack which could result in information disclosure.

Ready to move

Start Securing

Free, no credit card | First findings in minutes