Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:31060
HistoryJun 25, 2021 - 4:45 a.m.

Information Disclosure

2021-06-2504:45:07
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
5

0.001 Low

EPSS

Percentile

44.3%

flow-server is vulnerable to information disclosure. Lack of validation and sanitization of path in the default RouteNotFoundError view allows an attacker to enumerate available routes via malicious HTTP requests.

0.001 Low

EPSS

Percentile

44.3%