Show filters
1 Total Results
Displaying 1-1 of 1
Sort by:
Attacker Value
Unknown

CVE-2022-29970

Disclosure Date: May 02, 2022 (last updated October 07, 2023)
Sinatra before 2.2.0 does not validate that the expanded path matches public_dir when serving static files.