A DoS vulnerability exists in Rack <v3.0.4.2, <v2.2.6.3, <v2.1.4.3 and <v2.0.9.3 within in the Multipart MIME parsing code in which could allow an attacker to craft requests that can be abuse to cause multipart parsing to take longer than expected.
https://www.debian.org/security/2023/dsa-5530
https://security.netapp.com/advisory/ntap-20231208-0015/
https://lists.debian.org/debian-lts-announce/2023/04/msg00017.html