Security Advisories (2)
CVE-2012-5572 (2014-05-30)

CRLF injection vulnerability in the cookie method allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a cookie name.

CVE-2011-1589 (2011-04-05)

Directory traversal vulnerability (Mojolicious report, but Dancer was vulnerable as well).

Provides

in lib/Dancer/FileUtils.pm
in lib/Dancer/GetOpt.pm
in lib/Dancer/Helpers.pm
in lib/Dancer/Logger.pm
in lib/Dancer/Logger/File.pm
in lib/Dancer/Renderer.pm
in lib/Dancer/Response.pm
in lib/Dancer/Route.pm
in lib/Dancer/SharedData.pm