Skip to content

Path_Traversal @ format.py #1

@danielgerb

Description

@danielgerb

Path_Traversal issue exists @ format.py in branch master

Method at line 275 of /scripts/validate/format.py gets dynamic data from the argv element. This element’s value then flows through the code and is eventually used in a file path for local disk access in main at line 256 of /scripts/validate/format.py. This may cause a Path Traversal vulnerability.

Namespace: danielgerb
Repository: public-API
Repository Url: https://github.com/danielgerb/public-API
CxAST-Project: danielgerb/public-API
CxAST platform scan: 1c36dc32-6289-4fa2-949a-3fd6c4cf5551
Branch: master
Application: public-API
Severity: MEDIUM
State: TO_VERIFY
Status: NEW
CWE: 22
Lines: 275


References
Read more

Metadata

Metadata

Assignees

No one assigned

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions