CVE-2022-31533
11.07.2022, 01:15
The decentraminds/umbral repository through 2020-01-15 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
| Vendor | Product | Version |
|---|---|---|
| umbral_project | umbral | 𝑥 ≤ 2020-01-15 |
𝑥
= Vulnerable software versions