CVE-2022-31502
11.07.2022, 01:15
The operatorequals/wormnest repository through 0.4.7 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
Vendor | Product | Version |
---|---|---|
wormnest_project | wormnest | 𝑥 ≤ 0.4.7 |
𝑥
= Vulnerable software versions
References