rack-contrib
Contributed Rack Middleware and Utilities
Activity
- Latest release
- 2y ago
- Total releases
- 19
- Cadence
- ~6 months
- Last 12 months
- 0
Details
- License
- MIT
- First release
- Jan 23, 2009
| Version | Released | |
|---|---|---|
2.5.0
minor
| ||
2.4.0
minor
1 CVE
CVE-2024-35231
GHSA-8c8q-2xw3-j869
May 28, 2024
rack-contrib vulnerable to Denial of Service due to the unconstrained value of the incoming "profiler_runs" parameter
8.6
/ 10
High
Network
Low
None
None
Changed
None
None
High
SummaryThe next ruby code is vulnerable to denial of service due to the fact that the user controlled data
An exploit as such PoCHerein the
A Dockerfile:
A Gemfile
A Docker compose
To run the PoC
To exploit DoS:
Impact
Affected versions
0.9.0
0.9.2
1.0.0
1.0.1
1.1.0
1.2.0
1.2.0.39.g17d21b4
1.3.0
1.4.0
1.5.0
1.6.0
1.7.0
+ 7 more Show less
1.8.0
2.0.0
2.0.1
2.1.0
2.2.0
2.3.0
2.4.0
Fixed in
2.5.0
References
Updated Sep 10, 2026 · Source: OSV.dev | ||
2.3.0
minor
1 CVE
CVE-2024-35231
GHSA-8c8q-2xw3-j869
May 28, 2024
rack-contrib vulnerable to Denial of Service due to the unconstrained value of the incoming "profiler_runs" parameter
8.6
/ 10
High
Network
Low
None
None
Changed
None
None
High
SummaryThe next ruby code is vulnerable to denial of service due to the fact that the user controlled data
An exploit as such PoCHerein the
A Dockerfile:
A Gemfile
A Docker compose
To run the PoC
To exploit DoS:
Impact
Affected versions
0.9.0
0.9.2
1.0.0
1.0.1
1.1.0
1.2.0
1.2.0.39.g17d21b4
1.3.0
1.4.0
1.5.0
1.6.0
1.7.0
+ 7 more Show less
1.8.0
2.0.0
2.0.1
2.1.0
2.2.0
2.3.0
2.4.0
Fixed in
2.5.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
2.3.0
minor
Dependencies (15)
+ 7 more
Changelog
Compare changes
|
|
2.2.0
minor
1 CVE
CVE-2024-35231
GHSA-8c8q-2xw3-j869
May 28, 2024
rack-contrib vulnerable to Denial of Service due to the unconstrained value of the incoming "profiler_runs" parameter
8.6
/ 10
High
Network
Low
None
None
Changed
None
None
High
SummaryThe next ruby code is vulnerable to denial of service due to the fact that the user controlled data
An exploit as such PoCHerein the
A Dockerfile:
A Gemfile
A Docker compose
To run the PoC
To exploit DoS:
Impact
Affected versions
0.9.0
0.9.2
1.0.0
1.0.1
1.1.0
1.2.0
1.2.0.39.g17d21b4
1.3.0
1.4.0
1.5.0
1.6.0
1.7.0
+ 7 more Show less
1.8.0
2.0.0
2.0.1
2.1.0
2.2.0
2.3.0
2.4.0
Fixed in
2.5.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
2.2.0
minor
Dependencies (15)
+ 7 more
Changelog
Compare changes
|
|
2.1.0
minor
1 CVE
CVE-2024-35231
GHSA-8c8q-2xw3-j869
May 28, 2024
rack-contrib vulnerable to Denial of Service due to the unconstrained value of the incoming "profiler_runs" parameter
8.6
/ 10
High
Network
Low
None
None
Changed
None
None
High
SummaryThe next ruby code is vulnerable to denial of service due to the fact that the user controlled data
An exploit as such PoCHerein the
A Dockerfile:
A Gemfile
A Docker compose
To run the PoC
To exploit DoS:
Impact
Affected versions
0.9.0
0.9.2
1.0.0
1.0.1
1.1.0
1.2.0
1.2.0.39.g17d21b4
1.3.0
1.4.0
1.5.0
1.6.0
1.7.0
+ 7 more Show less
1.8.0
2.0.0
2.0.1
2.1.0
2.2.0
2.3.0
2.4.0
Fixed in
2.5.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
2.1.0
minor
Dependencies (14)
+ 6 more
Changelog
Compare changes
|
|
2.0.1
patch
1 CVE
CVE-2024-35231
GHSA-8c8q-2xw3-j869
May 28, 2024
rack-contrib vulnerable to Denial of Service due to the unconstrained value of the incoming "profiler_runs" parameter
8.6
/ 10
High
Network
Low
None
None
Changed
None
None
High
SummaryThe next ruby code is vulnerable to denial of service due to the fact that the user controlled data
An exploit as such PoCHerein the
A Dockerfile:
A Gemfile
A Docker compose
To run the PoC
To exploit DoS:
Impact
Affected versions
0.9.0
0.9.2
1.0.0
1.0.1
1.1.0
1.2.0
1.2.0.39.g17d21b4
1.3.0
1.4.0
1.5.0
1.6.0
1.7.0
+ 7 more Show less
1.8.0
2.0.0
2.0.1
2.1.0
2.2.0
2.3.0
2.4.0
Fixed in
2.5.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
2.0.1
patch
Dependencies (14)
+ 6 more
Changelog
Compare changes
|
|
2.0.0
major
1 CVE
CVE-2024-35231
GHSA-8c8q-2xw3-j869
May 28, 2024
rack-contrib vulnerable to Denial of Service due to the unconstrained value of the incoming "profiler_runs" parameter
8.6
/ 10
High
Network
Low
None
None
Changed
None
None
High
SummaryThe next ruby code is vulnerable to denial of service due to the fact that the user controlled data
An exploit as such PoCHerein the
A Dockerfile:
A Gemfile
A Docker compose
To run the PoC
To exploit DoS:
Impact
Affected versions
0.9.0
0.9.2
1.0.0
1.0.1
1.1.0
1.2.0
1.2.0.39.g17d21b4
1.3.0
1.4.0
1.5.0
1.6.0
1.7.0
+ 7 more Show less
1.8.0
2.0.0
2.0.1
2.1.0
2.2.0
2.3.0
2.4.0
Fixed in
2.5.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
2.0.0
major
Dependencies (14)
+ 6 more
Changelog
Compare changes
|
|
1.8.0
minor
1 CVE
CVE-2024-35231
GHSA-8c8q-2xw3-j869
May 28, 2024
rack-contrib vulnerable to Denial of Service due to the unconstrained value of the incoming "profiler_runs" parameter
8.6
/ 10
High
Network
Low
None
None
Changed
None
None
High
SummaryThe next ruby code is vulnerable to denial of service due to the fact that the user controlled data
An exploit as such PoCHerein the
A Dockerfile:
A Gemfile
A Docker compose
To run the PoC
To exploit DoS:
Impact
Affected versions
0.9.0
0.9.2
1.0.0
1.0.1
1.1.0
1.2.0
1.2.0.39.g17d21b4
1.3.0
1.4.0
1.5.0
1.6.0
1.7.0
+ 7 more Show less
1.8.0
2.0.0
2.0.1
2.1.0
2.2.0
2.3.0
2.4.0
Fixed in
2.5.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
1.8.0
minor
Dependencies (14)
+ 6 more
Changelog
Compare changes
|
|
1.7.0
minor
1 CVE
CVE-2024-35231
GHSA-8c8q-2xw3-j869
May 28, 2024
rack-contrib vulnerable to Denial of Service due to the unconstrained value of the incoming "profiler_runs" parameter
8.6
/ 10
High
Network
Low
None
None
Changed
None
None
High
SummaryThe next ruby code is vulnerable to denial of service due to the fact that the user controlled data
An exploit as such PoCHerein the
A Dockerfile:
A Gemfile
A Docker compose
To run the PoC
To exploit DoS:
Impact
Affected versions
0.9.0
0.9.2
1.0.0
1.0.1
1.1.0
1.2.0
1.2.0.39.g17d21b4
1.3.0
1.4.0
1.5.0
1.6.0
1.7.0
+ 7 more Show less
1.8.0
2.0.0
2.0.1
2.1.0
2.2.0
2.3.0
2.4.0
Fixed in
2.5.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
1.7.0
minor
Dependencies (14)
+ 6 more
Changelog
Compare changes
|
|
1.6.0
minor
1 CVE
CVE-2024-35231
GHSA-8c8q-2xw3-j869
May 28, 2024
rack-contrib vulnerable to Denial of Service due to the unconstrained value of the incoming "profiler_runs" parameter
8.6
/ 10
High
Network
Low
None
None
Changed
None
None
High
SummaryThe next ruby code is vulnerable to denial of service due to the fact that the user controlled data
An exploit as such PoCHerein the
A Dockerfile:
A Gemfile
A Docker compose
To run the PoC
To exploit DoS:
Impact
Affected versions
0.9.0
0.9.2
1.0.0
1.0.1
1.1.0
1.2.0
1.2.0.39.g17d21b4
1.3.0
1.4.0
1.5.0
1.6.0
1.7.0
+ 7 more Show less
1.8.0
2.0.0
2.0.1
2.1.0
2.2.0
2.3.0
2.4.0
Fixed in
2.5.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
1.6.0
minor
Dependencies (14)
+ 6 more
Changelog
Compare changes
|
|
1.5.0
minor
1 CVE
CVE-2024-35231
GHSA-8c8q-2xw3-j869
May 28, 2024
rack-contrib vulnerable to Denial of Service due to the unconstrained value of the incoming "profiler_runs" parameter
8.6
/ 10
High
Network
Low
None
None
Changed
None
None
High
SummaryThe next ruby code is vulnerable to denial of service due to the fact that the user controlled data
An exploit as such PoCHerein the
A Dockerfile:
A Gemfile
A Docker compose
To run the PoC
To exploit DoS:
Impact
Affected versions
0.9.0
0.9.2
1.0.0
1.0.1
1.1.0
1.2.0
1.2.0.39.g17d21b4
1.3.0
1.4.0
1.5.0
1.6.0
1.7.0
+ 7 more Show less
1.8.0
2.0.0
2.0.1
2.1.0
2.2.0
2.3.0
2.4.0
Fixed in
2.5.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
1.5.0
minor
Dependencies (14)
+ 6 more
Changelog
Compare changes
|
|
1.4.0
minor
1 CVE
CVE-2024-35231
GHSA-8c8q-2xw3-j869
May 28, 2024
rack-contrib vulnerable to Denial of Service due to the unconstrained value of the incoming "profiler_runs" parameter
8.6
/ 10
High
Network
Low
None
None
Changed
None
None
High
SummaryThe next ruby code is vulnerable to denial of service due to the fact that the user controlled data
An exploit as such PoCHerein the
A Dockerfile:
A Gemfile
A Docker compose
To run the PoC
To exploit DoS:
Impact
Affected versions
0.9.0
0.9.2
1.0.0
1.0.1
1.1.0
1.2.0
1.2.0.39.g17d21b4
1.3.0
1.4.0
1.5.0
1.6.0
1.7.0
+ 7 more Show less
1.8.0
2.0.0
2.0.1
2.1.0
2.2.0
2.3.0
2.4.0
Fixed in
2.5.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
1.4.0
minor
Dependencies (13)
+ 5 more
Changelog
Compare changes
|
|
1.3.0
minor
1 CVE
CVE-2024-35231
GHSA-8c8q-2xw3-j869
May 28, 2024
rack-contrib vulnerable to Denial of Service due to the unconstrained value of the incoming "profiler_runs" parameter
8.6
/ 10
High
Network
Low
None
None
Changed
None
None
High
SummaryThe next ruby code is vulnerable to denial of service due to the fact that the user controlled data
An exploit as such PoCHerein the
A Dockerfile:
A Gemfile
A Docker compose
To run the PoC
To exploit DoS:
Impact
Affected versions
0.9.0
0.9.2
1.0.0
1.0.1
1.1.0
1.2.0
1.2.0.39.g17d21b4
1.3.0
1.4.0
1.5.0
1.6.0
1.7.0
+ 7 more Show less
1.8.0
2.0.0
2.0.1
2.1.0
2.2.0
2.3.0
2.4.0
Fixed in
2.5.0
References
Updated Sep 10, 2026 · Source: OSV.dev |
1.3.0
minor
Dependencies (13)
+ 5 more
Changelog
Compare changes
|
|
1.2.0
minor
1 CVE
CVE-2024-35231
GHSA-8c8q-2xw3-j869
May 28, 2024
rack-contrib vulnerable to Denial of Service due to the unconstrained value of the incoming "profiler_runs" parameter
8.6
/ 10
High
Network
Low
None
None
Changed
None
None
High
SummaryThe next ruby code is vulnerable to denial of service due to the fact that the user controlled data
An exploit as such PoCHerein the
A Dockerfile:
A Gemfile
A Docker compose
To run the PoC
To exploit DoS:
Impact
Affected versions
0.9.0
0.9.2
1.0.0
1.0.1
1.1.0
1.2.0
1.2.0.39.g17d21b4
1.3.0
1.4.0
1.5.0
1.6.0
1.7.0
+ 7 more Show less
1.8.0
2.0.0
2.0.1
2.1.0
2.2.0
2.3.0
2.4.0
Fixed in
2.5.0
References
Updated Sep 10, 2026 · Source: OSV.dev | ||
1.1.0
minor
1 CVE
CVE-2024-35231
GHSA-8c8q-2xw3-j869
May 28, 2024
rack-contrib vulnerable to Denial of Service due to the unconstrained value of the incoming "profiler_runs" parameter
8.6
/ 10
High
Network
Low
None
None
Changed
None
None
High
SummaryThe next ruby code is vulnerable to denial of service due to the fact that the user controlled data
An exploit as such PoCHerein the
A Dockerfile:
A Gemfile
A Docker compose
To run the PoC
To exploit DoS:
Impact
Affected versions
0.9.0
0.9.2
1.0.0
1.0.1
1.1.0
1.2.0
1.2.0.39.g17d21b4
1.3.0
1.4.0
1.5.0
1.6.0
1.7.0
+ 7 more Show less
1.8.0
2.0.0
2.0.1
2.1.0
2.2.0
2.3.0
2.4.0
Fixed in
2.5.0
References
Updated Sep 10, 2026 · Source: OSV.dev | ||
1.0.1
patch
1 CVE
CVE-2024-35231
GHSA-8c8q-2xw3-j869
May 28, 2024
rack-contrib vulnerable to Denial of Service due to the unconstrained value of the incoming "profiler_runs" parameter
8.6
/ 10
High
Network
Low
None
None
Changed
None
None
High
SummaryThe next ruby code is vulnerable to denial of service due to the fact that the user controlled data
An exploit as such PoCHerein the
A Dockerfile:
A Gemfile
A Docker compose
To run the PoC
To exploit DoS:
Impact
Affected versions
0.9.0
0.9.2
1.0.0
1.0.1
1.1.0
1.2.0
1.2.0.39.g17d21b4
1.3.0
1.4.0
1.5.0
1.6.0
1.7.0
+ 7 more Show less
1.8.0
2.0.0
2.0.1
2.1.0
2.2.0
2.3.0
2.4.0
Fixed in
2.5.0
References
Updated Sep 10, 2026 · Source: OSV.dev | ||
1.0.0
major
1 CVE
CVE-2024-35231
GHSA-8c8q-2xw3-j869
May 28, 2024
rack-contrib vulnerable to Denial of Service due to the unconstrained value of the incoming "profiler_runs" parameter
8.6
/ 10
High
Network
Low
None
None
Changed
None
None
High
SummaryThe next ruby code is vulnerable to denial of service due to the fact that the user controlled data
An exploit as such PoCHerein the
A Dockerfile:
A Gemfile
A Docker compose
To run the PoC
To exploit DoS:
Impact
Affected versions
0.9.0
0.9.2
1.0.0
1.0.1
1.1.0
1.2.0
1.2.0.39.g17d21b4
1.3.0
1.4.0
1.5.0
1.6.0
1.7.0
+ 7 more Show less
1.8.0
2.0.0
2.0.1
2.1.0
2.2.0
2.3.0
2.4.0
Fixed in
2.5.0
References
Updated Sep 10, 2026 · Source: OSV.dev | ||
0.9.2
patch
1 CVE
CVE-2024-35231
GHSA-8c8q-2xw3-j869
May 28, 2024
rack-contrib vulnerable to Denial of Service due to the unconstrained value of the incoming "profiler_runs" parameter
8.6
/ 10
High
Network
Low
None
None
Changed
None
None
High
SummaryThe next ruby code is vulnerable to denial of service due to the fact that the user controlled data
An exploit as such PoCHerein the
A Dockerfile:
A Gemfile
A Docker compose
To run the PoC
To exploit DoS:
Impact
Affected versions
0.9.0
0.9.2
1.0.0
1.0.1
1.1.0
1.2.0
1.2.0.39.g17d21b4
1.3.0
1.4.0
1.5.0
1.6.0
1.7.0
+ 7 more Show less
1.8.0
2.0.0
2.0.1
2.1.0
2.2.0
2.3.0
2.4.0
Fixed in
2.5.0
References
Updated Sep 10, 2026 · Source: OSV.dev | ||
0.9.0
initial
1 CVE
CVE-2024-35231
GHSA-8c8q-2xw3-j869
May 28, 2024
rack-contrib vulnerable to Denial of Service due to the unconstrained value of the incoming "profiler_runs" parameter
8.6
/ 10
High
Network
Low
None
None
Changed
None
None
High
SummaryThe next ruby code is vulnerable to denial of service due to the fact that the user controlled data
An exploit as such PoCHerein the
A Dockerfile:
A Gemfile
A Docker compose
To run the PoC
To exploit DoS:
Impact
Affected versions
0.9.0
0.9.2
1.0.0
1.0.1
1.1.0
1.2.0
1.2.0.39.g17d21b4
1.3.0
1.4.0
1.5.0
1.6.0
1.7.0
+ 7 more Show less
1.8.0
2.0.0
2.0.1
2.1.0
2.2.0
2.3.0
2.4.0
Fixed in
2.5.0
References
Updated Sep 10, 2026 · Source: OSV.dev |