vulnerability

Ubuntu: (Multiple Advisories) (CVE-2022-30123): Rack vulnerabilities

Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
Dec 5, 2022
Added
Mar 22, 2023
Modified
Apr 16, 2026

Description

A sequence injection vulnerability exists in Rack <2.0.9.1, <2.1.4.1 and <2.2.3.1 which could allow is a possible shell escape in the Lint and CommonLogger components of Rack.

Solutions

ubuntu-pro-upgrade-ruby-rackubuntu-upgrade-ruby-rack
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.