Security Advisories (2)
CVE-2012-5572 (2014-05-30)

CRLF injection vulnerability in the cookie method allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a cookie name.

CVE-2011-1589 (2011-04-05)

Directory traversal vulnerability (Mojolicious report, but Dancer was vulnerable as well).

Documentation

Modules

Common interface for logging in Dancer
session engine for the Dancer framework
Abstract class for session engine
YAML-file-based session backend for Dancer
template support in Dancer
abstract class for Dancer's template engines
a pure Perl 5 template engine for Dancer
Template Toolkit wrapper for Dancer

Provides

in lib/Dancer/Cookie.pm
in lib/Dancer/Cookies.pm
in lib/Dancer/Error.pm
in lib/Dancer/Exceptions.pm
in lib/Dancer/FileUtils.pm
in lib/Dancer/GetOpt.pm
in lib/Dancer/Handler.pm
in lib/Dancer/Handler/PSGI.pm
in lib/Dancer/Handler/Standalone.pm
in lib/Dancer/Helpers.pm
in lib/Dancer/Logger/Abstract.pm
in lib/Dancer/Logger/File.pm
in lib/Dancer/ModuleLoader.pm
in lib/Dancer/Object.pm
in lib/Dancer/Renderer.pm
in lib/Dancer/Response.pm
in lib/Dancer/Route.pm
in lib/Dancer/SharedData.pm