kraken <= 0.1.4 has an arbitrary file read vulnerability via the component testfs.
References
Link | Resource |
---|---|
https://github.com/uber/kraken/issues/333 | Exploit Issue Tracking Third Party Advisory |
Configurations
Information
Published : 2023-01-20 09:15
Updated : 2023-01-27 04:37
NVD link : CVE-2022-47747
Mitre link : CVE-2022-47747
JSON object : View
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Products Affected
uber
- kraken