Total vulnerabilities in the database
Sinatra before 2.2.0 does not validate that the expanded path matches public_dir when serving static files.
Software | From | Fixed in |
---|---|---|
sinatrarb / sinatra | - | 2.2.0 |
debian / debian_linux | 10.0 | 10.0.x |
![]() |
- | 2.2.0 |