CVE-2022-31504
11.07.2022, 01:15
The ChangeWeDer/BaiduWenkuSpider_flaskWeb repository before 2021-11-29 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
Vendor | Product | Version |
---|---|---|
baiduwenkuspider_flaskweb_project | baiduwenkuspider_flaskweb | 𝑥 < 2021-11-29 |
𝑥
= Vulnerable software versions