CVE-2022-31579
EUVD-2022-5303311.07.2022, 01:15
The ralphjzhang/iasset repository through 2022-05-04 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| iasset_project | iasset | 𝑥 ≤ 2022-05-04 |
𝑥
= Vulnerable software versions