Search CVE reports


Toggle filters

1 result


CVE-2024-47220

Medium priority
Fixed

An issue was discovered in the WEBrick toolkit through 1.8.1 for Ruby. It allows HTTP request smuggling by providing both a Content-Length header and a Transfer-Encoding header, e.g., "GET /admin HTTP/1.1\r\n" inside of a "POST...

1 affected package

ruby-webrick

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
ruby-webrick Fixed Fixed Not in release
Show less packages