Absolute Path Traversal in Helm Flask Celery Repository by Olmax99
CVE-2022-31549
9.3CRITICAL
What is CVE-2022-31549?
A vulnerability exists in the Helm Flask Celery repository by Olmax99, where the use of the Flask 'send_file' function without proper safeguards allows for absolute path traversal. This flaw could enable unauthorized access to server files, leading to potential data exposure. Developers utilizing this repository should be aware of this issue and update to the fixed version released after May 25, 2022 to mitigate risks associated with this vulnerability.
