Security Advisory
CVE-2022-31536
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
The jaygarza1982/ytdl-sync repository through 2021-01-02 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.