Sploitus

CVE-2020-8184

No indexed exploits for CVE-2020-8184 yet

A reliance on cookies without validation/integrity check security vulnerability exists in rack < 2.2.3, rack < 2.1.4 that makes it is possible for an attacker to forge a secure or host-only cookie prefix.

Rack Project Rack
< 2.1.4, 2.2.3
Fix
Available
CVSS 3.1
7.5 HIGH
EPSS
2.9% (86th percentile)
Weakness
CWE-20, CWE-784
NVD status
Modified
Published
2020-06-19
CVE-2020-8184 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2020-8184 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2020-8184 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.