2022-07-11 00:57:36
mitre
PUBLISHED
The kotekan/kotekan repository through 2021.11 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.