Skip to content

Rack has an unsafe default in Rack::QueryParser allows params_limit bypass via semicolon-separated parameters

High severity GitHub Reviewed Published Sep 25, 2025 in rack/rack

No closed alerts for this advisory

Give feedback on Dependabot alerts