CVE-2018-11627
Sinatra before 2.0.2 has XSS via the 400 Bad Request page that occurs upon a params parser exception.
Sinatra before 2.0.2 has XSS via the 400 Bad Request page that occurs upon a params parser exception.
MEDIUM · CVSS 6.1
EPSS 0.00398
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0