CVE-2024-27456
Published
CVSS v3
9.1
CRITICAL
CVSS v2
N/A
Affected
1
PROJECT
Description
rack-cors (aka Rack CORS Middleware) 2.0.1 has 0666 permissions for the .rb files.
Rack Middleware for handling Cross-Origin Resource Sharing (CORS), which makes cross-origin AJAX possible.