Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-23fx-92m6-4f2g: pretalx allows path traversal in HTML export

pretalx 2.3.1 before 2.3.2 allows path traversal in HTML export (a non-default feature). Organizers can trigger the overwriting (with the standard pretalx 404 page content) of an arbitrary file.

ghsa
#git

pretalx allows path traversal in HTML export

Moderate severity GitHub Reviewed Published Apr 20, 2023 to the GitHub Advisory Database • Updated Apr 21, 2023

ghsa: Latest News

GHSA-g5x8-v2ch-gj2g: Vaultwarden HTML injection vulnerability