CVE-2022-31526 CRITICAL CVSS 9.3

The ThundeRatz/ThunderDocs repository through 2020-05-01 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.

Published: 2022-07-11

Description

The ThundeRatz/ThunderDocs repository through 2020-05-01 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.

AI Intelligence Brief

AI Intelligence

Analyzing vulnerability vectors…