Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pm8c-8wxv-392p

Опубликовано: 07 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.7

Описание

: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in TAGFREE X-Free Uploader XFU allows Path Traversal.This issue affects X-Free Uploader: from 1.0.1.0084 before 1.0.1.0085, from 2.0.1.0034 before 2.0.1.0035.

: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in TAGFREE X-Free Uploader XFU allows Path Traversal.This issue affects X-Free Uploader: from 1.0.1.0084 before 1.0.1.0085, from 2.0.1.0034 before 2.0.1.0035.

EPSS

Процентиль: 29%
0.00103
Низкий

8.7 High

CVSS4

Дефекты

CWE-22

Связанные уязвимости

nvd
6 месяцев назад

: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in TAGFREE X-Free Uploader XFU allows Path Traversal.This issue affects X-Free Uploader: from 1.0.1.0084 before 1.0.1.0085, from 2.0.1.0034 before 2.0.1.0035.

EPSS

Процентиль: 29%
0.00103
Низкий

8.7 High

CVSS4

Дефекты

CWE-22