Path Traversal in Gravitee API Management
Discription

HTML injection combined with path traversal in the Email service in Gravitee API Management before 1.25.3 allows anonymous users to read arbitrary files via a /management/users/register request.Read More

Back to Main

Subscribe for the latest news: