A vulnerability classified as critical was found in Upsonic up to 0.55.6. This vulnerability affects the function os.path.join of the file markdown/server.py. The manipulation of the argument file.filename leads to path traversal. The exploit has been disclosed to the public and may be used.
| Software | From | Fixed in |
|---|---|---|
| upsonic / upsonic | - | 0.55.6.x |
upsonic
|
- | 0.56.0 |