Lucene search

K
redhatcveRedhat.comRH:CVE-2020-25032
HistorySep 08, 2020 - 2:21 a.m.

CVE-2020-25032

2020-09-0802:21:05
redhat.com
access.redhat.com
7

0.01 Low

EPSS

Percentile

83.6%

A flaw was found in Flask-CORS (aka CORS Middleware for Flask). This issue allows the …/ directory traversal to access private resources because resource matching does not ensure that pathnames are in a canonical format. The highest threat from this vulnerability is to confidentiality.