mongrel
A small fast HTTP library and server that runs Rails, Camping, Nitro and Iowa apps.
Activity
- Latest release
- 16y ago
- Total releases
- 40
- Cadence
- ~4 days
- Last 12 months
- 0
Details
- First release
- Jan 31, 2006
| Version | Released | |
|---|---|---|
1.2.0.pre2
pre
| ||
1.1.5
patch
| ||
1.1.4
patch
| ||
1.1.3
patch
| ||
1.0.5
patch
| ||
1.1.2
patch
1 CVE
CVE-2007-6612
GHSA-m7r6-43v2-49vf
May 01, 2022
Mongrel vulnerable to directory traversal via double-encoded sequences
Medium
Directory traversal vulnerability in DirHandler (lib/mongrel/handlers.rb) in Mongrel 1.0.4 (1.0.3 and prior are not affected) and 1.1.x before 1.1.3 allows remote attackers to read arbitrary files via an HTTP request containing double-encoded sequences ( Affected versions
1.0.4
1.1
1.1.1
1.1.2
Fixed in
1.0.5
1.1.3
References
Updated Dec 02, 2024 · Source: OSV.dev | ||
1.1.1
patch
1 CVE
CVE-2007-6612
GHSA-m7r6-43v2-49vf
May 01, 2022
Mongrel vulnerable to directory traversal via double-encoded sequences
Medium
Directory traversal vulnerability in DirHandler (lib/mongrel/handlers.rb) in Mongrel 1.0.4 (1.0.3 and prior are not affected) and 1.1.x before 1.1.3 allows remote attackers to read arbitrary files via an HTTP request containing double-encoded sequences ( Affected versions
1.0.4
1.1
1.1.1
1.1.2
Fixed in
1.0.5
1.1.3
References
Updated Dec 02, 2024 · Source: OSV.dev | ||
1.1
minor
1 CVE
CVE-2007-6612
GHSA-m7r6-43v2-49vf
May 01, 2022
Mongrel vulnerable to directory traversal via double-encoded sequences
Medium
Directory traversal vulnerability in DirHandler (lib/mongrel/handlers.rb) in Mongrel 1.0.4 (1.0.3 and prior are not affected) and 1.1.x before 1.1.3 allows remote attackers to read arbitrary files via an HTTP request containing double-encoded sequences ( Affected versions
1.0.4
1.1
1.1.1
1.1.2
Fixed in
1.0.5
1.1.3
References
Updated Dec 02, 2024 · Source: OSV.dev | ||
1.0.4
patch
1 CVE
CVE-2007-6612
GHSA-m7r6-43v2-49vf
May 01, 2022
Mongrel vulnerable to directory traversal via double-encoded sequences
Medium
Directory traversal vulnerability in DirHandler (lib/mongrel/handlers.rb) in Mongrel 1.0.4 (1.0.3 and prior are not affected) and 1.1.x before 1.1.3 allows remote attackers to read arbitrary files via an HTTP request containing double-encoded sequences ( Affected versions
1.0.4
1.1
1.1.1
1.1.2
Fixed in
1.0.5
1.1.3
References
Updated Dec 02, 2024 · Source: OSV.dev | ||
1.0.3
patch
| ||
1.0.2
patch
| ||
1.0.1
patch
| ||
1.0
major
| ||
0.3.13.4
patch
| ||
0.3.13.3
patch
| ||
0.3.13.2
patch
| ||
0.3.13.1
patch
| ||
0.3.13
patch
| ||
0.3.12.4
patch
| ||
0.3.12.3
patch
| ||
0.3.12.1
patch
| ||
0.3.12.2
patch
| ||
0.3.12
patch
| ||
0.3.11
patch
| ||
0.3.10.1
patch
| ||
0.3.10
patch
| ||
0.3.9
patch
| ||
0.3.8
patch
| ||
0.3.7.1
patch
| ||
0.3.7
patch
| ||
0.3.6
patch
| ||
0.3.5
patch
| ||
0.3.4
patch
| ||
0.3.3
patch
| ||
0.3.2
patch
| ||
0.3.1
patch
| ||
0.3
minor
| ||
0.2.2
patch
| ||
0.2.1
patch
| ||
0.2.0
initial
|