Beveiligingsadvies

CVE-2022-25937

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-02-13 05:00:01
Laatst bijgewerkt 2025-03-21 14:52:00
Toegewezen door snyk
CVSS-score 6.5
Status PUBLISHED

Beschrijving

Versions of the package glance before 3.0.9 are vulnerable to Directory Traversal that allows users to read files outside the public root directory. This is related to but distinct from the vulnerability reported in [CVE-2018-3715](https://security.snyk.io/vuln/npm:glance:20180129).