|
Ran
|
Jobs
1
|
Files
57
|
Run time
1min
|
Badge
README BADGES
|
push
github
Chore(deps): Bump rack from 3.2.1 to 3.2.3 (#149) Bumps [rack](https://github.com/rack/rack) from 3.2.1 to 3.2.3. <details> <summary>Changelog</summary> <p><em>Sourced from <a href="https://github.com/rack/rack/blob/main/CHANGELOG.md">rack's changelog</a>.</em></p> <blockquote> <h2>[3.2.3] - 2025-10-10</h2> <h3>Security</h3> <ul> <li><a href="https://github.com/advisories/GHSA-r657-rxjc-j557">CVE-2025-61780</a> Improper handling of headers in <code>Rack::Sendfile</code> may allow proxy bypass.</li> <li><a href="https://github.com/advisories/GHSA-6xw4-3v39-52mm">CVE-2025-61919</a> Unbounded read in <code>Rack::Request</code> form parsing can lead to memory exhaustion.</li> </ul> <h2>[3.2.2] - 2025-10-07</h2> <h3>Security</h3> <ul> <li><a href="https://github.com/advisories/GHSA-wpv5-97wm-hp9c">CVE-2025-61772</a> Multipart parser buffers unbounded per-part headers, enabling DoS (memory exhaustion)</li> <li><a href="https://github.com/advisories/GHSA-w9pc-fmgc-vxvw">CVE-2025-61771</a> Multipart parser buffers large non‑file fields entirely in memory, enabling DoS (memory exhaustion)</li> <li><a href="https://github.com/advisories/GHSA-p543-xpfm-54cp">CVE-2025-61770</a> Unbounded multipart preamble buffering enables DoS (memory exhaustion)</li> </ul> </blockquote> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/rack/rack/commit/32bf8887d"><code>32bf888</code></a> Bump patch version.</li> <li><a href="https://github.com/rack/rack/commit/e179614c4"><code>e179614</code></a> Unbounded read in <code>Rack::Request</code> form parsing can lead to memory exhaustion.</li> <li><a href="https://github.com/rack/rack/commit/57277b774"><code>57277b7</code></a> Improper handling of proxy headers in <code>Rack::Sendfile</code> may allow proxy bypass.</li> <li><a href="https://github.com/rack/rack/commit/403b74b2441d666845177ce769036e294f66371... (continued)
214 of 224 branches covered (95.54%)
Branch coverage included in aggregate %.
1101 of 1121 relevant lines covered (98.22%)
61.88 hits per line
| ID | Job ID | Ran | Files | Coverage | |
|---|---|---|---|---|---|
| 1 | 20516051393.1 | 57 |
97.77 |
GitHub Action Run |
| Coverage | ∆ | File | Lines | Relevant | Covered | Missed | Hits/Line | Branch Hits | Branch Misses |
|---|