Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-j453-hm5x-c46w: Echo vulnerable to directory traversal

Due to improper sanitization of user input on Windows, the static file handler allows for directory traversal, allowing an attacker to read files outside of the target directory that the server has permission to read.

ghsa
#windows#git

Echo vulnerable to directory traversal

High severity GitHub Reviewed Published Dec 7, 2022 • Updated Dec 7, 2022

Related news

CVE-2020-36565: GO-2021-0051 - Go Packages

Due to improper sanitization of user input on Windows, the static file handler allows for directory traversal, allowing an attacker to read files outside of the target directory that the server has permission to read.