CVE-2022-31515 CRITICAL CVSS 9.3

The Delor4/CarceresBE repository through 1.0 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.

Published: 2022-07-11

Description

The Delor4/CarceresBE repository through 1.0 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.

AI Intelligence Brief

AI Intelligence

Analyzing vulnerability vectors…