Executive brief
Sinatra is vulnerable to ReDoS through ETag header value generation
Affected products
- RubyGems sinatra
Junglewise Threat Intelligence
CVE-2025-61921 · Severity: medium · CVSS 4 · Published 2025-10-10
Technologies: sinatra (RubyGems). Vendors: RubyGems.
Sinatra is vulnerable to ReDoS through ETag header value generation