boazsegev/iodine

boazsegev/iodine

Releases137
Frequency3 weeks 1 day
Last Release
Stars937
iodine - HTTP / WebSockets Server for Ruby with Pub/Sub support

CVE History

CVEPublishedCVSS v3CVSS v2
7.5 HIGH

Path traversal in the static file service in Iodine less than 0.7.33 allows an unauthenticated, remote attacker to read files outside the public folder via malicious URLs.