File tree Expand file tree Collapse file tree 1 file changed +7
-3
lines changed Expand file tree Collapse file tree 1 file changed +7
-3
lines changed Original file line number Diff line number Diff line change @@ -17,12 +17,16 @@ description: |
17
17
handling the X-Forwarded-Host header, attackers can potentially
18
18
exploit Cache Poisoning or Routing-based SSRF.
19
19
cvss_v3 : 5.4
20
- notes : Never patched
20
+ patched_versions :
21
+ - " >= 4.1.0"
21
22
related :
22
23
url :
23
24
- https://nvd.nist.gov/vuln/detail/CVE-2024-21510
24
25
- https://security.snyk.io/vuln/SNYK-RUBY-SINATRA-6483832
25
- - https://github.com/sinatra/sinatra/pull/2010
26
+ - https://github.com/advisories/GHSA-hxx2-7vcw-mqr3
26
27
- https://github.com/sinatra/sinatra/blob/b626e2d82c23b4fde0b51782fd32ca27ccde1d1a/lib/sinatra/base.rb#L319
27
28
- https://github.com/sinatra/sinatra/blob/b626e2d82c23b4fde0b51782fd32ca27ccde1d1a/lib/sinatra/base.rb#L323C1-L343C17
28
- - https://github.com/advisories/GHSA-hxx2-7vcw-mqr3
29
+ - https://github.com/sinatra/sinatra/issues/2052
30
+ - https://github.com/sinatra/sinatra/pull/2010
31
+ - https://github.com/sinatra/sinatra/pull/2053
32
+ - https://github.com/sinatra/sinatra/commit/cd3e00de20ddaff34ea30f7a74a7b9dad189d1d8
You can’t perform that action at this time.
0 commit comments