Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-rrhw-54r8-545q: Path traversal in filegator

Path Traversal in GitHub repository filegator/filegator prior to 7.8.0 for non-admin users. Files created with ..\ as part of their name will be interpreted as a path. Users are thus able to add filesystem entries outside the scope of their user to their dashboard and subsequently are able to modify those files.

ghsa
#git

Path traversal in filegator

Moderate severity GitHub Reviewed Published May 25, 2022 • Updated May 25, 2022

Related news

CVE-2022-1850: Path Traversal in filegator

Path Traversal in GitHub repository filegator/filegator prior to 7.8.0.