CVE-2022-31506
EUVD-2022-644411.07.2022, 01:15
The cmusatyalab/opendiamond repository through 10.1.1 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| cmu | opendiamond | 𝑥 ≤ 10.1.1 |
𝑥
= Vulnerable software versions
References