Количество 2
Количество 2
CVE-2020-7758
больше 5 лет назад
This affects versions of package browserless-chrome before 1.40.2-chrome-stable. User input flowing from the workspace endpoint gets used to create a file path filePath and this is fetched and then sent back to a user. This can be escaped to fetch arbitrary files from a server.
CVSS3: 7.5
EPSS: Низкий
GHSA-8p9r-f949-699g
больше 4 лет назад
Path Traversal in browserless-chrome
CVSS3: 7.5
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2020-7758 This affects versions of package browserless-chrome before 1.40.2-chrome-stable. User input flowing from the workspace endpoint gets used to create a file path filePath and this is fetched and then sent back to a user. This can be escaped to fetch arbitrary files from a server. | CVSS3: 7.5 | 0% Низкий | больше 5 лет назад | |
GHSA-8p9r-f949-699g Path Traversal in browserless-chrome | CVSS3: 7.5 | 0% Низкий | больше 4 лет назад |
Уязвимостей на страницу
20