CVE-2022-31558 CRITICAL CVSS 9.3

The tooxie/shiva-server repository through 0.10.0 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.

Published: 2022-07-11

Description

The tooxie/shiva-server repository through 0.10.0 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.

AI Intelligence Brief

AI Intelligence

Analyzing vulnerability vectors…