CVE-2025-32441 | Rack up to 2.2.13 Session Cookie Rack::Session race condition (GHSA-vpfw-47h7-xj4g)
A vulnerability was found in Rack up to 2.2.13. It has been classified as problematic. Affected is the function Rack::Session of the component Session Cookie Handler. The manipulation leads to race condition.
This vulnerability is traded as CVE-2025-32441. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.