libretime hv3.0.0-alpha.10 is affected by a path...
Critical severity
Unreviewed
Published
Dec 2, 2021
to the GitHub Advisory Database
•
Updated Feb 1, 2023
Description
Published by the National Vulnerability Database
Dec 1, 2021
Published to the GitHub Advisory Database
Dec 2, 2021
Last updated
Feb 1, 2023
libretime hv3.0.0-alpha.10 is affected by a path manipulation vulnerability in /blob/master/legacy/application/modules/rest/controllers/ShowImageController.php through the rename function.
References