nginx-auth-token-module icon indicating copy to clipboard operation
nginx-auth-token-module copied to clipboard

[Snyk] Security upgrade sinatra from 2.0.8.1 to 2.1.0

Open abedra opened this issue 5 months ago • 0 comments

snyk-top-banner

Snyk has created this PR to fix 12 vulnerabilities in the rubygems dependencies of this project.

Snyk changed the following file(s):

  • Gemfile
  • Gemfile.lock

Vulnerabilities that will be fixed with an upgrade:

Issue Score
high severity Allocation of Resources Without Limits or Throttling
SNYK-RUBY-RACK-10074187
  649  
high severity Relative Path Traversal
SNYK-RUBY-RACK-9398129
  649  
high severity Denial of Service (DoS)
SNYK-RUBY-RACK-3356639
  589  
high severity Denial of Service (DoS)
SNYK-RUBY-RACK-6274385
  589  
high severity Improper Output Neutralization for Logs
SNYK-RUBY-RACK-8720151
  569  
medium severity Improper Output Neutralization for Logs
SNYK-RUBY-RACK-9058602
  559  
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-RUBY-RACK-3237233
  479  
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-RUBY-RACK-3237237
  479  
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-RUBY-RACK-3237240
  479  
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-RUBY-RACK-3360233
  479  
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-RUBY-RACK-6274383
  479  
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-RUBY-RACK-6274384
  479  

[!IMPORTANT]

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.
  • This PR was automatically created by Snyk using the credentials of a real user.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information: 🧐 View latest project report 📜 Customise PR templates 🛠 Adjust project settings 📚 Read about Snyk's upgrade logic


Learn how to fix vulnerabilities with free interactive lessons:

🦉 Allocation of Resources Without Limits or Throttling 🦉 Regular Expression Denial of Service (ReDoS) 🦉 Improper Output Neutralization for Logs 🦉 More lessons are available in Snyk Learn

abedra avatar Jul 21 '25 04:07 abedra