Search CVE reports


Toggle filters

1 – 2 of 2 results


CVE-2025-6442

Medium priority
Vulnerable

Ruby WEBrick read_header HTTP Request Smuggling Vulnerability. This vulnerability allows remote attackers to smuggle arbitrary HTTP requests on affected installations of Ruby WEBrick. This issue is exploitable when the product is...

1 affected package

ruby-webrick

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ruby-webrick Vulnerable Vulnerable
Show less packages

CVE-2024-47220

Medium priority
Fixed

An issue was discovered in the WEBrick toolkit through 1.8.1 for Ruby. It allows HTTP request smuggling by providing both a Content-Length header and a Transfer-Encoding header, e.g., "GET /admin HTTP/1.1\r\n" inside of a "POST...

1 affected package

ruby-webrick

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ruby-webrick Fixed Fixed Not in release
Show less packages