Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Baiduwenkuspider Flaskweb Project Subscribe
Filtered by product Baiduwenkuspider Flaskweb
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-31504 1 Baiduwenkuspider Flaskweb Project 1 Baiduwenkuspider Flaskweb 2022-07-15 6.4 MEDIUM 9.3 CRITICAL
The ChangeWeDer/BaiduWenkuSpider_flaskWeb repository before 2021-11-29 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.