Vulnerabilities (CVE)

Filtered by vendor Sigil-ebook Subscribe
Filtered by product Sigil
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-14452 3 Canonical, Flightcrew Project, Sigil-ebook 3 Ubuntu Linux, Flightcrew, Sigil 2024-11-21 5.0 MEDIUM 7.5 HIGH
Sigil before 0.9.16 is vulnerable to a directory traversal, allowing attackers to write arbitrary files via a ../ (dot dot slash) in a ZIP archive entry that is mishandled during extraction.