Yaws 1.91 has a directory traversal vulnerability in the way certain URLs are processed. A remote authenticated user could use this flaw to obtain content of arbitrary local files via specially-crafted URL request.
Loading...
Loading...
Score 6.5 from GitHub Security Advisory published 2022-04-22. NVD baseline CVSS 6.5; sources differ by 0.0.
Yaws 1.91 has a directory traversal vulnerability in the way certain URLs are processed. A remote authenticated user could use this flaw to obtain content of arbitrary local files via specially-crafted URL request.
November 26, 2019
November 21, 2024
See which npm, PyPI, Go, and Maven packages are affected by CVE-2011-4350
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.