Filtered by CWE-22
Total 6552 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-31528 1 Bonn Activity Maps Annotation Tool Project 1 Bonn Activity Maps Annotation Tool 2024-08-03 9.3 Critical
The bonn-activity-maps/bam_annotation_tool repository through 2021-08-31 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31555 1 Nurse Quest Project 1 Nurse Quest 2024-08-03 9.3 Critical
The romain20100/nursequest repository through 2018-02-22 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31545 1 Modelconverter Project 1 Modelconverter 2024-08-03 9.3 Critical
The ml-inory/ModelConverter repository through 2021-04-26 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31568 1 Rexians 1 Rex-web 2024-08-03 9.3 Critical
The Rexians/rex-web repository through 2022-06-05 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31565 1 Syrabond Project 1 Syrabond 2024-08-03 9.3 Critical
The yogson/syrabond repository through 2020-05-25 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31551 1 Flask-mongo-skel Project 1 Flask-mongo-skel 2024-08-03 9.3 Critical
The pleomax00/flask-mongo-skel repository through 2012-11-01 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31527 1 Flask-file-server Project 1 Flask-file-server 2024-08-03 9.3 Critical
The Wildog/flask-file-server repository through 2020-02-20 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31540 1 Hin-eng-preprocessing Project 1 Hin-eng-preprocessing 2024-08-03 9.3 Critical
The kumardeepak/hin-eng-preprocessing repository through 2019-07-16 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31529 1 Monorepo Project 1 Monorepo 2024-08-03 9.3 Critical
The cinemaproject/monorepo repository through 2021-03-03 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31533 1 Umbral Project 1 Umbral 2024-08-03 9.3 Critical
The decentraminds/umbral repository through 2020-01-15 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31541 1 Barry Voice Assistant Project 1 Barry Voice Assistant 2024-08-03 9.3 Critical
The lyubolp/Barry-Voice-Assistant repository through 2021-01-18 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31561 1 Sphere Imagebackend Project 1 Sphere Imagebackend 2024-08-03 9.3 Critical
The varijkapil13/Sphere_ImageBackend repository through 2019-10-03 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31536 1 Ytdl-sync Project 1 Ytdl-sync 2024-08-03 9.3 Critical
The jaygarza1982/ytdl-sync repository through 2021-01-02 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31534 1 Pythonweb Project 1 Pythonweb 2024-08-03 9.3 Critical
The echoleegroup/PythonWeb repository through 2018-10-31 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31535 1 Fishtank Project 1 Fishtank 2024-08-03 9.3 Critical
The freefood89/Fishtank repository through 2015-06-24 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31525 1 Deep Learning Studio Project 1 Deep Learning Studio 2024-08-03 9.3 Critical
The SummaLabs/DLS repository through 0.1.0 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31507 1 Ganga Project 1 Ganga 2024-08-03 9.3 Critical
The ganga-devs/ganga repository before 8.5.10 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31506 1 Cmu 1 Opendiamond 2024-08-03 9.3 Critical
The cmusatyalab/opendiamond repository through 10.1.1 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31502 1 Wormnest Project 1 Wormnest 2024-08-03 9.3 Critical
The operatorequals/wormnest repository through 0.4.7 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31510 1 Simple-rat Project 1 Simple-rat 2024-08-03 9.3 Critical
The sergeKashkin/Simple-RAT repository before 2022-05-03 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.