Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g7h7-rg53-h2g9

Опубликовано: 12 июл. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.3

Описание

The RipudamanKaushikDal/projects repository through 2022-04-03 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.

The RipudamanKaushikDal/projects repository through 2022-04-03 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.

9.3 Critical

CVSS3

Дефекты

CWE-22

Связанные уязвимости

nvd
больше 3 лет назад

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that no specific affected product had been identified. Notes: none

9.3 Critical

CVSS3

Дефекты

CWE-22