{"api_version":"v1","generated_at":"2026-10-04T03:00:00+00:00","product":{"cve_count":8,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-publisher-not-identified-https-github-com-rack-rack-38a73ec88713","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"https://github.com/rack/rack","next_cursor":null,"observations":[{"affected":"3.0.4.2, 2.2.6.3, 2.1.4.3, 2.0.9.3","affected_versions_present":true,"cve_id":"CVE-2023-27530","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-27530","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-10-15T18:33:52.509Z","patch_url":"https://discuss.rubyonrails.org/t/cve-2023-27530-possible-dos-vulnerability-in-multipart-mime-parsing/82388","primary_source":"","published":"2023-03-10T00:00:00.000Z"},{"affected":"2.0.9.2, 2.1.4.2, 2.2.4.1, 3.0.0.1","affected_versions_present":true,"cve_id":"CVE-2022-44572","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-44572","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-03T13:54:03.874Z","patch_url":"","primary_source":"","published":"2023-02-09T00:00:00.000Z"},{"affected":"2.0.9.2, 2.1.4.2, 2.2.4.1, 3.0.0.1","affected_versions_present":true,"cve_id":"CVE-2022-44571","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-44571","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-03T13:54:03.839Z","patch_url":"https://discuss.rubyonrails.org/t/cve-2022-44571-possible-denial-of-service-vulnerability-in-rack-content-disposition-parsing/82126","primary_source":"","published":"2023-02-09T00:00:00.000Z"},{"affected":"2.0.9.2, 2.1.4.2, 2.2.4.2, 3.0.0.1","affected_versions_present":true,"cve_id":"CVE-2022-44570","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-44570","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-03T13:54:03.858Z","patch_url":"https://discuss.rubyonrails.org/t/cve-2022-44570-possible-denial-of-service-vulnerability-in-racks-range-header-parsing/82125","primary_source":"","published":"2023-02-09T00:00:00.000Z"},{"affected":"2.0.9.1, 2.1.4.1, 2.2.3.1","affected_versions_present":true,"cve_id":"CVE-2022-30123","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-30123","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-08-03T06:40:47.582Z","patch_url":"","primary_source":"","published":"2022-12-05T00:00:00.000Z"},{"affected":"2.0.9.1, 2.1.4.1, 2.2.3.1","affected_versions_present":true,"cve_id":"CVE-2022-30122","cve_url":"https://cve.blacktree.nl/cve/CVE-2022-30122","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2024-11-19T20:16:22.716Z","patch_url":"","primary_source":"","published":"2022-12-05T00:00:00.000Z"},{"affected":"Fixed in 2.1.3, >= 2.2.0","affected_versions_present":true,"cve_id":"CVE-2020-8161","cve_url":"https://cve.blacktree.nl/cve/CVE-2020-8161","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-04T09:48:25.656Z","patch_url":"https://groups.google.com/g/rubyonrails-security/c/IOO1vNZTzPA","primary_source":"","published":"2020-07-02T00:00:00.000Z"},{"affected":"rack >= 2.2.3, rack >= 2.1.4","affected_versions_present":true,"cve_id":"CVE-2020-8184","cve_url":"https://cve.blacktree.nl/cve/CVE-2020-8184","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-08-04T09:56:26.918Z","patch_url":"https://hackerone.com/reports/895727","primary_source":"","published":"2020-06-19T00:00:00.000Z"}],"source_generated_at":"2026-10-03T06:19:54.128Z","vendor":"Publisher not identified"}}
