Junglewise Threat Intelligence

rama has Stored XSS in ServeDir HTML directory listing via unescaped file names and URI path

Severity: low · CVSS 3.1 · Published 2026-07-07

Vendors: crates.io.

Executive brief

rama has Stored XSS in ServeDir HTML directory listing via unescaped file names and URI path

Affected products

  • crates.io rama

Related threats