Vulnerabilities (CVE)

Filtered by CWE-22
Total 7219 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-31543 1 Setupbox Project 1 Setupbox 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The maxtortime/SetupBox repository through 1.0 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31542 1 Mdweb Project 1 Mdweb 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The mandoku/mdweb repository through 2015-05-07 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31541 1 Barry Voice Assistant Project 1 Barry Voice Assistant 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The lyubolp/Barry-Voice-Assistant repository through 2021-01-18 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31540 1 Hin-eng-preprocessing Project 1 Hin-eng-preprocessing 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The kumardeepak/hin-eng-preprocessing repository through 2019-07-16 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31539 1 Kotekan Project 1 Kotekan 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The kotekan/kotekan repository through 2021.11 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31538 1 Mp-m08-interface Project 1 Mp-m08-interface 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The joaopedro-fg/mp-m08-interface repository through 2020-12-10 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31537 1 Solar-system-simulator Project 1 Solar-system-simulator 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The jmcginty15/Solar-system-simulator repository through 2021-07-26 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31536 1 Ytdl-sync Project 1 Ytdl-sync 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The jaygarza1982/ytdl-sync repository through 2021-01-02 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31535 1 Fishtank Project 1 Fishtank 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The freefood89/Fishtank repository through 2015-06-24 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31534 1 Pythonweb Project 1 Pythonweb 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The echoleegroup/PythonWeb repository through 2018-10-31 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31533 1 Umbral Project 1 Umbral 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The decentraminds/umbral repository through 2020-01-15 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31532 1 Travel Blahg Project 1 Travel Blahg 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The dankolbman/travel_blahg repository through 2016-01-16 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31531 1 Dainst 1 Cilantro 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The dainst/cilantro repository through 0.0.4 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31530 1 Csm Server Project 1 Csm Server 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The csm-aut/csm repository through 3.5 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31529 1 Monorepo Project 1 Monorepo 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The cinemaproject/monorepo repository through 2021-03-03 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31528 1 Bonn Activity Maps Annotation Tool Project 1 Bonn Activity Maps Annotation Tool 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The bonn-activity-maps/bam_annotation_tool repository through 2021-08-31 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31527 1 Flask-file-server Project 1 Flask-file-server 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The Wildog/flask-file-server repository through 2020-02-20 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31526 1 Thunderatz 1 Thunderdocs 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The ThundeRatz/ThunderDocs repository through 2020-05-01 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31525 1 Deep Learning Studio Project 1 Deep Learning Studio 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The SummaLabs/DLS repository through 0.1.0 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31524 1 Purestorage 1 Pure Swagger 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The PureStorage-OpenConnect/swagger repository through 1.1.5 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.