Improper Input Validation
Discription

The weave server API is vulnerable to Improper Input Validation. The vulnerability is caused due to a missing validation while fetching files from a remote directory for allowed file paths. This allows to traverse and leak arbitrary files remotely and can lead to a low-privileged users assuming the role of the server…Read More

Back to Main

Subscribe for the latest news: