Security Advisory

CVE-2024-6583

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-03-20 10:10:23
Last updated 2025-03-20 18:22:17
Assigner @huntr_ai
State PUBLISHED

Description

A path traversal vulnerability exists in the latest version of stangirard/quivr. This vulnerability allows an attacker to upload files to arbitrary paths in an S3 bucket by manipulating the file path in the upload request.