The sanojtharindu/caretakerr-api repository through 2021-05-17 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.Read More
CVE-2022-31580
![](https://api-security.blog/wp-content/uploads/2022/07/cve-min-1-1024x683.png)
The sanojtharindu/caretakerr-api repository through 2021-05-17 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.Read More