Vulnerabilities > Casbin > Casdoor > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-09-09 CVE-2022-38638 Path Traversal vulnerability in Casbin Casdoor 1.97.3
Casdoor v1.97.3 was discovered to contain an arbitrary file write vulnerability via the fullFilePath parameter at /api/upload-resource.
network
low complexity
casbin CWE-22
critical
9.1