Vulnerabilities (CVE)

Filtered by CWE-22
Total 6545 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-31572 1 Cockybook Project 1 Cockybook 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The ceee-vip/cockybook repository through 2015-04-16 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31571 1 Python-flask-restful-api Project 1 Python-flask-restful-api 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The akashtalole/python-flask-restful-api repository through 2019-09-16 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31570 1 Ceneo-web-scrapper Project 1 Ceneo-web-scrapper 2024-11-21 7.5 HIGH 9.8 CRITICAL
The adriankoczuruek/ceneo-web-scrapper repository through 2021-03-15 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31568 1 Rexians 1 Rex-web 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The Rexians/rex-web repository through 2022-06-05 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31567 1 Data Stream Algorithm Benchmark Project 1 Data Stream Algorithm Benchmark 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The DSABenchmark/DSAB repository through 2.1 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31566 1 Data Stream Algorithm Benchmark Project 1 Data Stream Algorithm Benchmark 2024-11-21 5.0 MEDIUM 8.6 HIGH
The DSAB-local/DSAB repository through 2019-02-18 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31565 1 Syrabond Project 1 Syrabond 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The yogson/syrabond repository through 2020-05-25 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31564 1 Munhak 1 Munhak-moa 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The woduq1414/munhak-moa repository before 2022-05-03 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31563 1 Vprj Project 1 Vprj 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The whmacmac/vprj repository through 2022-04-06 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31562 1 Internshipsystem Project 1 Internshipsystem 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The waveyan/internshipsystem repository through 2018-05-22 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31561 1 Sphere Imagebackend Project 1 Sphere Imagebackend 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The varijkapil13/Sphere_ImageBackend repository through 2019-10-03 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31560 1 Photo Tag Project 1 Photo Tag 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The uncleYiba/photo_tag repository through 2020-08-31 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31559 1 Flask-yeoman Project 1 Flask-yeoman 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The tsileo/flask-yeoman repository through 2013-09-13 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31558 1 Shiva-server Project 1 Shiva-server 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The tooxie/shiva-server repository through 0.10.0 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31557 1 Golem Project 1 Golem 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The seveas/golem repository through 2016-05-17 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31556 1 Trainenergyserver Project 1 Trainenergyserver 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The rusyasoft/TrainEnergyServer repository through 2017-08-03 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31555 1 Nurse Quest Project 1 Nurse Quest 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The romain20100/nursequest repository through 2018-02-22 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31554 1 Movie-review-sentiment-analysis Project 1 Movie-review-sentiment-analysis 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The rohitnayak/movie-review-sentiment-analysis repository through 2017-05-07 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31553 1 Sleep Learner Project 1 Sleep Learner 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The rainsoupah/sleep-learner repository through 2021-02-21 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31552 1 Anuvaad-corpus Project 1 Anuvaad-corpus 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The project-anuvaad/anuvaad-corpus repository through 2020-11-23 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.