CVE Database
/

CVE-2020-8184

Back to search

CVE-2020-8184

Published: Jun 19, 2020

Modified: Aug 4, 2024

PUBLISHED

Description

A reliance on cookies without validation/integrity check security vulnerability exists in rack < 2.2.3, rack < 2.1.4 that makes it is possible for an attacker to forge a secure or host-only cookie prefix.

VendorProductVersions

n/a

https://github.com/rack/rack

affected
rack >= 2.2.3, rack >= 2.1.4

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now