NA

CVE-2024-27456

Published: 26/02/2024 Updated: 26/02/2024

Vulnerability Summary

rack-cors (aka Rack CORS Middleware) 2.0.1 has 0666 permissions for the .rb files.

Vendor Advisories

Debian Bug report logs - #1064862 ruby-rack-cors: CVE-2024-27456 Package: src:ruby-rack-cors; Maintainer for src:ruby-rack-cors is Debian Ruby Team <pkg-ruby-extras-maintainers@listsaliothdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Mon, 26 Feb 2024 19:45:04 UTC Severity: important Tags: ...