CRITICAL9.8CVE-2023-40175Puma HTTP Request/Response Smuggling vulnerability from 0
from 0, < 4.3.8-1+deb11u2
HIGH8.0CVE-2022-23634Puma used with Rails may lead to Information Exposure from 0, < 4.3.8-1+deb11u2
HIGH7.5Puma PROXY Protocol v1 Accepts Repeated Protocol Headers on Persistent Connections
from 0
HIGH7.5Puma PROXY Protocol v1 Parser Allows Remote Memory Exhaustion
from 0
HIGH7.5puma - security update
from 0, < 4.3.6-1
HIGH7.5puma - security update
from 0, < 3.6.0-1+deb9u1
MEDIUM6.8HTTP Smuggling via Transfer-Encoding Header in Puma
from 0, < 4.3.6-1
MEDIUM6.5HTTP Response Splitting (Early Hints) in Puma
from 0, < 3.12.4-1
MEDIUM5.9puma - security update
from 0, < 4.3.8-1+deb11u3
MEDIUM5.9puma - security update
from 0, < 4.3.8-1+deb11u3
MEDIUM5.4Puma's header normalization allows for client to clobber proxy set headers
from 0, < 4.3.8-1+deb11u3