Vulnerability Report: GO-2023-1713

An attacker can craft a remote request to upload a file to "/group1/upload" that uses path traversal to instead write the file contents to an attacker controlled path on the server.

For detailed information about this vulnerability, visit https://github.com/advisories/GHSA-xq3x-grrj-fj6x.

Jump to

Keyboard shortcuts

? : This menu
/ : Search site
f or F : Jump to
y or Y : Canonical URL