Headline
GHSA-vpjc-4jcv-jc29: NATS nats-server allows directory traversal via unintended path to a management action
NATS nats-server 2.2.0 through 2.7.4 allows directory traversal because of an unintended path to a management action from a management account.
NATS nats-server allows directory traversal via unintended path to a management action
Critical severity GitHub Reviewed Published Sep 19, 2023 to the GitHub Advisory Database • Updated Sep 21, 2023
Related news
CVE-2022-28357: Releases · nats-io/nats-server
NATS nats-server 2.2.0 through 2.7.4 allows directory traversal because of an unintended path to a management action from a management account.
CVE-2022-35118: AARO-Bugs/AARO-CVE-List.md at master · Accenture/AARO-Bugs
PyroCMS v3.9 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities.