Path Traversal Vulnerability in WindMill Repository by Lukasavicus
CVE-2022-31519
9.3CRITICAL
What is CVE-2022-31519?
A vulnerability exists in the WindMill repository by Lukasavicus that allows attackers to exploit absolute path traversal due to improper use of the Flask send_file function. This flaw could enable unauthorized access to system files, posing risks to data integrity and confidentiality. It underscores the importance of securing file retrieval mechanisms in web applications.