Vulnerability Database

296,733

Total vulnerabilities in the database

CVE-2022-29804

Incorrect conversion of certain invalid paths to valid, absolute paths in Clean in path/filepath before Go 1.17.11 and Go 1.18.3 on Windows allows potential directory traversal attack.

  • Published: Aug 10, 2022
  • Updated: Apr 14, 2023
  • CVE: CVE-2022-29804
  • Severity: High
  • Exploit:

CVSS v3:

  • Severity: High
  • Score: 7.5
  • AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N