CVE-2022-31533

Publication date

2022-07-11 00:56:51

Family

mitre

State

PUBLISHED

Description

The decentraminds/umbral repository through 2020-01-15 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.