Lucene search

K
osvGoogleOSV:GHSA-9M6J-FCG5-2442
HistoryMay 06, 2021 - 4:10 p.m.

Path traversal in url-parse

2021-05-0616:10:51
Google
osv.dev
23
path traversal
url-parse
backslash
mishandling
uri
relative path
software

EPSS

0.002

Percentile

54.6%

url-parse before 1.5.0 mishandles certain uses of backslash such as http:/ and interprets the URI as a relative path.