Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 7

Количество 7

github логотип

GHSA-2h4p-vjrc-8xpq

3 месяца назад

Mako vulnerable to path traversal via backslash URI on Windows in TemplateLookup

EPSS: Низкий
ubuntu логотип

CVE-2026-44307

3 месяца назад

Mako is a template library written in Python. Prior to 1.3.12, on Windows, a URI using backslash traversal (e.g. \..\..\ secret.txt) bypasses the directory traversal check in Template.__init__ and the posixpath-based normalization in TemplateLookup.get_template(), allowing reads of files outside the configured template directory. This vulnerability is fixed in 1.3.12.

EPSS: Низкий
redhat логотип

CVE-2026-44307

3 месяца назад

Mako is a template library written in Python. Prior to 1.3.12, on Windows, a URI using backslash traversal (e.g. \..\..\ secret.txt) bypasses the directory traversal check in Template.__init__ and the posixpath-based normalization in TemplateLookup.get_template(), allowing reads of files outside the configured template directory. This vulnerability is fixed in 1.3.12.

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2026-44307

3 месяца назад

Mako is a template library written in Python. Prior to 1.3.12, on Windows, a URI using backslash traversal (e.g. \..\..\ secret.txt) bypasses the directory traversal check in Template.__init__ and the posixpath-based normalization in TemplateLookup.get_template(), allowing reads of files outside the configured template directory. This vulnerability is fixed in 1.3.12.

EPSS: Низкий
msrc логотип

CVE-2026-44307

3 месяца назад

Mako: Path traversal via backslash URI on Windows in TemplateLookup

EPSS: Низкий
debian логотип

CVE-2026-44307

3 месяца назад

Mako is a template library written in Python. Prior to 1.3.12, on Wind ...

EPSS: Низкий
redos логотип

ROS-20260713-73-0041

20 дней назад

Уязвимость python-mako

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2h4p-vjrc-8xpq

Mako vulnerable to path traversal via backslash URI on Windows in TemplateLookup

1%
Низкий
3 месяца назад
ubuntu логотип
CVE-2026-44307

Mako is a template library written in Python. Prior to 1.3.12, on Windows, a URI using backslash traversal (e.g. \..\..\ secret.txt) bypasses the directory traversal check in Template.__init__ and the posixpath-based normalization in TemplateLookup.get_template(), allowing reads of files outside the configured template directory. This vulnerability is fixed in 1.3.12.

1%
Низкий
3 месяца назад
redhat логотип
CVE-2026-44307

Mako is a template library written in Python. Prior to 1.3.12, on Windows, a URI using backslash traversal (e.g. \..\..\ secret.txt) bypasses the directory traversal check in Template.__init__ and the posixpath-based normalization in TemplateLookup.get_template(), allowing reads of files outside the configured template directory. This vulnerability is fixed in 1.3.12.

CVSS3: 5.9
1%
Низкий
3 месяца назад
nvd логотип
CVE-2026-44307

Mako is a template library written in Python. Prior to 1.3.12, on Windows, a URI using backslash traversal (e.g. \..\..\ secret.txt) bypasses the directory traversal check in Template.__init__ and the posixpath-based normalization in TemplateLookup.get_template(), allowing reads of files outside the configured template directory. This vulnerability is fixed in 1.3.12.

1%
Низкий
3 месяца назад
msrc логотип
CVE-2026-44307

Mako: Path traversal via backslash URI on Windows in TemplateLookup

1%
Низкий
3 месяца назад
debian логотип
CVE-2026-44307

Mako is a template library written in Python. Prior to 1.3.12, on Wind ...

1%
Низкий
3 месяца назад
redos логотип
ROS-20260713-73-0041

Уязвимость python-mako

CVSS3: 7.5
1%
Низкий
20 дней назад

Уязвимостей на страницу