Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:36569
HistoryAug 02, 2022 - 2:54 p.m.

Path Traversal

2022-08-0214:54:27
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10
streamlit
path traversal
vulnerability
componentrequesthandler
improper handling
attacker
malicious url
file paths

EPSS

0.002

Percentile

51.6%

streamlit is vulnerable to path traversal. The vulnerability exists in get function in ComponentRequestHandler due to improper handling of component requests outside the root directory which allows an attacker to access and overwrite the files by sending a malicious URL with file paths.

EPSS

0.002

Percentile

51.6%

Related for VERACODE:36569