Path Traversal Vulnerability in PaddlePaddle's Anakin Repository by GitHub
CVE-2022-31523
9.3CRITICAL
What is CVE-2022-31523?
The PaddlePaddle/Anakin repository allows for absolute path traversal due to the unsafe usage of the Flask send_file function. This vulnerability can be exploited to access unintended files within the server's file system, potentially leading to the exposure of sensitive information.
