Vulnerabilities (CVE)

Filtered by CWE-22
Total 6545 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-31551 1 Flask-mongo-skel Project 1 Flask-mongo-skel 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The pleomax00/flask-mongo-skel repository through 2012-11-01 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31550 1 Python Athena Stack Project 1 Python Athena Stack 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The olmax99/pyathenastack repository through 2019-11-08 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31549 1 Helm-flask-celery Project 1 Helm-flask-celery 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The olmax99/helm-flask-celery repository before 2022-05-25 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31548 1 Homepage Project 1 Homepage 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The nrlakin/homepage repository through 2017-03-06 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31547 1 Sphere Project 1 Sphere 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The noamezekiel/sphere repository through 2020-05-31 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31546 1 Glance Project 1 Glance 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The nlpweb/glance repository through 2014-06-27 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31545 1 Modelconverter Project 1 Modelconverter 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The ml-inory/ModelConverter repository through 2021-04-26 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31544 1 Xtomo 1 Robo-tom 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The meerstein/rbtm repository through 1.5 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31543 1 Setupbox Project 1 Setupbox 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The maxtortime/SetupBox repository through 1.0 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31542 1 Mdweb Project 1 Mdweb 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The mandoku/mdweb repository through 2015-05-07 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31541 1 Barry Voice Assistant Project 1 Barry Voice Assistant 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The lyubolp/Barry-Voice-Assistant repository through 2021-01-18 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31540 1 Hin-eng-preprocessing Project 1 Hin-eng-preprocessing 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The kumardeepak/hin-eng-preprocessing repository through 2019-07-16 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31539 1 Kotekan Project 1 Kotekan 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The kotekan/kotekan repository through 2021.11 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31538 1 Mp-m08-interface Project 1 Mp-m08-interface 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The joaopedro-fg/mp-m08-interface repository through 2020-12-10 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31537 1 Solar-system-simulator Project 1 Solar-system-simulator 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The jmcginty15/Solar-system-simulator repository through 2021-07-26 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31536 1 Ytdl-sync Project 1 Ytdl-sync 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The jaygarza1982/ytdl-sync repository through 2021-01-02 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31535 1 Fishtank Project 1 Fishtank 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The freefood89/Fishtank repository through 2015-06-24 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31534 1 Pythonweb Project 1 Pythonweb 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The echoleegroup/PythonWeb repository through 2018-10-31 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31533 1 Umbral Project 1 Umbral 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The decentraminds/umbral repository through 2020-01-15 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
CVE-2022-31532 1 Travel Blahg Project 1 Travel Blahg 2024-11-21 6.4 MEDIUM 9.3 CRITICAL
The dankolbman/travel_blahg repository through 2016-01-16 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.