Total vulnerabilities in the database
The nlpweb/glance repository through 2014-06-27 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
Software | From | Fixed in |
---|---|---|
glance_project / glance | - | 2014-06-27.x |