CVE-2022-31546
11.07.2022, 01:15
The nlpweb/glance repository through 2014-06-27 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
| Vendor | Product | Version |
|---|---|---|
| glance_project | glance | 𝑥 ≤ 2014-06-27 |
𝑥
= Vulnerable software versions