Critical Rack::Static Flaw Exposes Ruby Servers to File Access Attacks and Log Manipulation
Three critical vulnerabilities in the Rack Ruby web server interface could allow attackers to access unauthorized files, inject malicious data, and manipulate logs. The flaws include a path traversal vulnerability (CVE-2025-27610) and two CRLF injection issues (CVE-2025-27111, CVE-2025-251...
