CVE-2022-31543
11.07.2022, 01:15
The maxtortime/SetupBox repository through 1.0 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
| Vendor | Product | Version |
|---|---|---|
| setupbox_project | setupbox | 𝑥 ≤ 1.0 |
𝑥
= Vulnerable software versions