File tree 1 file changed +7
-3
lines changed
1 file changed +7
-3
lines changed Original file line number Diff line number Diff line change @@ -24,13 +24,17 @@ advisory:
24
24
handling the X-Forwarded-Host header, attackers can potentially
25
25
exploit Cache Poisoning or Routing-based SSRF.
26
26
cvss_v3 : 5.4
27
- notes : Never patched
27
+ patched_versions :
28
+ - " >= 4.1.0"
28
29
related :
29
30
url :
30
31
- https://nvd.nist.gov/vuln/detail/CVE-2024-21510
31
32
- https://security.snyk.io/vuln/SNYK-RUBY-SINATRA-6483832
32
- - https://github.com/sinatra/sinatra/pull/2010
33
+ - https://github.com/advisories/GHSA-hxx2-7vcw-mqr3
33
34
- https://github.com/sinatra/sinatra/blob/b626e2d82c23b4fde0b51782fd32ca27ccde1d1a/lib/sinatra/base.rb#L319
34
35
- https://github.com/sinatra/sinatra/blob/b626e2d82c23b4fde0b51782fd32ca27ccde1d1a/lib/sinatra/base.rb#L323C1-L343C17
35
- - https://github.com/advisories/GHSA-hxx2-7vcw-mqr3
36
+ - https://github.com/sinatra/sinatra/issues/2052
37
+ - https://github.com/sinatra/sinatra/pull/2010
38
+ - https://github.com/sinatra/sinatra/pull/2053
39
+ - https://github.com/sinatra/sinatra/commit/cd3e00de20ddaff34ea30f7a74a7b9dad189d1d8
36
40
---
You can’t perform that action at this time.
0 commit comments