Samuel Williams
17 exploits
Active since Aug 2023
Rack <2.2.12, <3.0.13, <3.1.11 - Log Injection
CVSS 7.5
Rack <2.2.14,3.0.16,3.1.14 - Info Disclosure
CVSS 7.5
Rack <2.2.12, <3.0.13, <3.1.11 - Log Injection
CVSS 7.5
Rack <2.2.14,3.0.16,3.1.14 - Info Disclosure
CVSS 7.5
Rack < 2.2.20 - Proxy Request Redirection via Untrusted x-sendfile Headers
CVSS 5.8
Rack < 2.2.20 - Denial of Service via Unbounded Form Parameter Memory Consumption
CVSS 7.5
Rack < 2.2.20 - Proxy Request Redirection via Untrusted x-sendfile Headers
CVSS 5.8
Rack < 2.2.20 - Denial of Service via Unbounded Form Parameter Memory Consumption
CVSS 7.5
socketry/protocol-http1 < 0.15.1 - HTTP Request Smuggling via Malformed Chunk Encoding
CVSS 5.8
rack-contrib < 2.5.0 - Denial of Service via Unconstrained profiler_runs Parameter
CVSS 8.6
Rack <2.2.12, <3.0.13, <3.1.11 - Log Injection
CVSS 7.5
Rack < 2.2.13 - Path Traversal via Encoded Path Sequences
CVSS 7.5
Rack < 2.2.14 - Unauthenticated Session Restoration via Race Condition in Rack::Session::Pool
CVSS 4.2
Rack::Session <2.1.1 - Privilege Escalation
CVSS 4.2
Rack <2.2.14,3.0.16,3.1.14 - Info Disclosure
CVSS 7.5
Rack < 2.2.20 - Proxy Request Redirection via Untrusted x-sendfile Headers
CVSS 5.8
Rack < 2.2.20 - Denial of Service via Unbounded Form Parameter Memory Consumption
CVSS 7.5