Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-41205

Опубликовано: 23 апр. 2026
Источник: redhat
CVSS3: 5.9
EPSS Низкий

Описание

Mako is a template library written in Python. Prior to 1.3.11, TemplateLookup.get_template() is vulnerable to path traversal when a URI starts with // (e.g., //../../../secret.txt). The root cause is an inconsistency between two slash-stripping implementations. Any file readable by the process can be returned as rendered template content when an application passes untrusted input directly to TemplateLookup.get_template(). This vulnerability is fixed in 1.3.11.

A flaw was found in Mako, a Python template library. This vulnerability, known as path traversal, allows an attacker to access files outside of the intended directory. By providing a specially crafted input to the TemplateLookup.get_template() function, a remote attacker can exploit an inconsistency in how the system handles URIs starting with //. This could lead to the disclosure of sensitive information from any file readable by the affected application.

Меры по смягчению последствий

To mitigate this issue, applications utilizing the Mako template library must validate and sanitize all input before passing it to the TemplateLookup.get_template() function. Implementing robust input validation routines within applications will prevent specially crafted URIs from traversing outside intended directories and accessing sensitive files.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Migration Toolkit for Applications 8mta/mta-solution-server-rhel9Fix deferred
Red Hat Enterprise Linux 8resource-agentsFix deferred
Red Hat OpenShift AI (RHOAI)rhoai/odh-mlflow-rhel9Fix deferred
Red Hat OpenShift AI (RHOAI)rhoai/odh-training-cuda128-torch29-py312-rhel9Fix deferred
Red Hat Quay 3quay/quay-rhel8Fix deferred
Red Hat Quay 3quay/quay-rhel9Fix deferred
Red Hat Satellite 6satellite/iop-host-inventory-rhel9Fix deferred

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-22
https://bugzilla.redhat.com/show_bug.cgi?id=2461244mako: Mako: Information disclosure via path traversal vulnerability

EPSS

Процентиль: 29%
0.00361
Низкий

5.9 Medium

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
3 месяца назад

Mako is a template library written in Python. Prior to 1.3.11, TemplateLookup.get_template() is vulnerable to path traversal when a URI starts with // (e.g., //../../../secret.txt). The root cause is an inconsistency between two slash-stripping implementations. Any file readable by the process can be returned as rendered template content when an application passes untrusted input directly to TemplateLookup.get_template(). This vulnerability is fixed in 1.3.11.

CVSS3: 7.5
nvd
3 месяца назад

Mako is a template library written in Python. Prior to 1.3.11, TemplateLookup.get_template() is vulnerable to path traversal when a URI starts with // (e.g., //../../../secret.txt). The root cause is an inconsistency between two slash-stripping implementations. Any file readable by the process can be returned as rendered template content when an application passes untrusted input directly to TemplateLookup.get_template(). This vulnerability is fixed in 1.3.11.

msrc
3 месяца назад

Mako: Path traversal via double-slash URI prefix in TemplateLookup

CVSS3: 7.5
debian
3 месяца назад

Mako is a template library written in Python. Prior to 1.3.11, Templat ...

suse-cvrf
3 месяца назад

Security update for python-Mako

EPSS

Процентиль: 29%
0.00361
Низкий

5.9 Medium

CVSS3