← volver
CVE-2022-23082

CureKit - Path Traversal in isFileOutsideDir

CVSS 7.5 HIGHEPSS 1.2%CWE-22
In CureKit versions v1.0.1 through v1.1.3 are vulnerable to path traversal as the function isFileOutsideDir fails to sanitize the user input which may lead to path traversal.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Productos afectados
WhiteSource · CureKit

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →