cassandra-web
Apache Cassandra web interface using Ruby, Event-machine, AngularJS, Server-Sent-Events and DataStax Ruby driver for Apache Cassandra
Activity
- Latest release
- 7y ago
- Total releases
- 6
- Cadence
- ~2 months
- Last 12 months
- 0
Details
- License
- MIT
- First release
- Sep 19, 2014
| Version | Released | |
|---|---|---|
0.5.0
minor
1 CVE
CVE-2020-36939
GHSA-8mfv-xhp5-48q9
Jan 27, 2026
Cassandra Web - Remote File Read
High
Network
Low
None
None
Cassandra Web 0.5.0 contains a directory traversal vulnerability that allows unauthenticated attackers to read arbitrary files by manipulating path traversal parameters. Attackers can exploit the disabled Rack::Protection module to read sensitive system files like /etc/passwd and retrieve Apache Cassandra database credentials. Affected versions
0.1.0
0.1.1
0.2.0
0.3.0
0.4.0
0.5.0
References
Updated Sep 08, 2026 · Source: OSV.dev |
0.5.0
minor
Dependencies (8)
Changelog
Compare changes
|
|
0.4.0
minor
1 CVE
CVE-2020-36939
GHSA-8mfv-xhp5-48q9
Jan 27, 2026
Cassandra Web - Remote File Read
High
Network
Low
None
None
Cassandra Web 0.5.0 contains a directory traversal vulnerability that allows unauthenticated attackers to read arbitrary files by manipulating path traversal parameters. Attackers can exploit the disabled Rack::Protection module to read sensitive system files like /etc/passwd and retrieve Apache Cassandra database credentials. Affected versions
0.1.0
0.1.1
0.2.0
0.3.0
0.4.0
0.5.0
References
Updated Sep 08, 2026 · Source: OSV.dev |
0.4.0
minor
Dependencies (8)
Changelog
Compare changes
|
|
0.3.0
minor
1 CVE
CVE-2020-36939
GHSA-8mfv-xhp5-48q9
Jan 27, 2026
Cassandra Web - Remote File Read
High
Network
Low
None
None
Cassandra Web 0.5.0 contains a directory traversal vulnerability that allows unauthenticated attackers to read arbitrary files by manipulating path traversal parameters. Attackers can exploit the disabled Rack::Protection module to read sensitive system files like /etc/passwd and retrieve Apache Cassandra database credentials. Affected versions
0.1.0
0.1.1
0.2.0
0.3.0
0.4.0
0.5.0
References
Updated Sep 08, 2026 · Source: OSV.dev |
0.3.0
minor
Dependencies (8)
Changelog
Compare changes
|
|
0.2.0
minor
1 CVE
CVE-2020-36939
GHSA-8mfv-xhp5-48q9
Jan 27, 2026
Cassandra Web - Remote File Read
High
Network
Low
None
None
Cassandra Web 0.5.0 contains a directory traversal vulnerability that allows unauthenticated attackers to read arbitrary files by manipulating path traversal parameters. Attackers can exploit the disabled Rack::Protection module to read sensitive system files like /etc/passwd and retrieve Apache Cassandra database credentials. Affected versions
0.1.0
0.1.1
0.2.0
0.3.0
0.4.0
0.5.0
References
Updated Sep 08, 2026 · Source: OSV.dev |
0.2.0
minor
Dependencies (7)
Changelog
Compare changes
|
|
0.1.1
patch
1 CVE
CVE-2020-36939
GHSA-8mfv-xhp5-48q9
Jan 27, 2026
Cassandra Web - Remote File Read
High
Network
Low
None
None
Cassandra Web 0.5.0 contains a directory traversal vulnerability that allows unauthenticated attackers to read arbitrary files by manipulating path traversal parameters. Attackers can exploit the disabled Rack::Protection module to read sensitive system files like /etc/passwd and retrieve Apache Cassandra database credentials. Affected versions
0.1.0
0.1.1
0.2.0
0.3.0
0.4.0
0.5.0
References
Updated Sep 08, 2026 · Source: OSV.dev |
0.1.1
patch
Dependencies (7)
Changelog
Compare changes
|
|
0.1.0
initial
1 CVE
CVE-2020-36939
GHSA-8mfv-xhp5-48q9
Jan 27, 2026
Cassandra Web - Remote File Read
High
Network
Low
None
None
Cassandra Web 0.5.0 contains a directory traversal vulnerability that allows unauthenticated attackers to read arbitrary files by manipulating path traversal parameters. Attackers can exploit the disabled Rack::Protection module to read sensitive system files like /etc/passwd and retrieve Apache Cassandra database credentials. Affected versions
0.1.0
0.1.1
0.2.0
0.3.0
0.4.0
0.5.0
References
Updated Sep 08, 2026 · Source: OSV.dev |