Filtered by CWE-22
Total 6551 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-31576 1 Shackerpanel Project 1 Shackerpanel 2024-08-03 9.3 Critical
The heidi-luong1109/shackerpanel repository through 2021-05-25 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31577 1 Audio Aligner App Project 1 Audio Aligner App 2024-08-03 9.3 Critical
The longmaoteamtf/audio_aligner_app repository through 2020-01-10 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31575 1 Livro Python Project 1 Livro Python 2024-08-03 9.3 Critical
The duducosmos/livro_python repository through 2018-06-06 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31578 1 Bt Lnmp Project 1 Bt Lnmp 2024-08-03 7.5 High
The piaoyunsoft/bt_lnmp repository through 2019-10-10 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31573 1 Chainer 1 Chainerrl-visualizer 2024-08-03 9.3 Critical
The chainer/chainerrl-visualizer repository through 0.1.1 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31580 1 Caretakerr-api Project 1 Caretakerr-api 2024-08-03 9.3 Critical
The sanojtharindu/caretakerr-api repository through 2021-05-17 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31586 1 Changepop-back Project 1 Changepop-back 2024-08-03 9.3 Critical
The unizar-30226-2019-06/ChangePop-Back repository through 2019-06-04 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31554 1 Movie-review-sentiment-analysis Project 1 Movie-review-sentiment-analysis 2024-08-03 9.3 Critical
The rohitnayak/movie-review-sentiment-analysis repository through 2017-05-07 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31579 1 Iasset Project 1 Iasset 2024-08-03 9.3 Critical
The ralphjzhang/iasset repository through 2022-05-04 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31572 1 Cockybook Project 1 Cockybook 2024-08-03 9.3 Critical
The ceee-vip/cockybook repository through 2015-04-16 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31539 1 Kotekan Project 1 Kotekan 2024-08-03 9.3 Critical
The kotekan/kotekan repository through 2021.11 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31553 1 Sleep Learner Project 1 Sleep Learner 2024-08-03 9.3 Critical
The rainsoupah/sleep-learner repository through 2021-02-21 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31582 1 Videoserver Project 1 Videoserver 2024-08-03 9.3 Critical
The shaolo1/VideoServer repository through 2019-09-21 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31544 1 Xtomo 1 Robo-tom 2024-08-03 9.3 Critical
The meerstein/rbtm repository through 1.5 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31571 1 Python-flask-restful-api Project 1 Python-flask-restful-api 2024-08-03 9.3 Critical
The akashtalole/python-flask-restful-api repository through 2019-09-16 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31537 1 Solar-system-simulator Project 1 Solar-system-simulator 2024-08-03 9.3 Critical
The jmcginty15/Solar-system-simulator repository through 2021-07-26 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31547 1 Sphere Project 1 Sphere 2024-08-03 9.3 Critical
The noamezekiel/sphere repository through 2020-05-31 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31556 1 Trainenergyserver Project 1 Trainenergyserver 2024-08-03 9.3 Critical
The rusyasoft/TrainEnergyServer repository through 2017-08-03 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31531 1 Dainst 1 Cilantro 2024-08-03 9.3 Critical
The dainst/cilantro repository through 0.0.4 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31581 1 Scorelab 1 Openmf 2024-08-03 9.3 Critical
The scorelab/OpenMF repository before 2022-05-03 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.