Vulnerabilities > Libretime

DATE CVE VULNERABILITY TITLE RISK
2021-12-01 CVE-2021-43685 Externally Controlled Reference to a Resource in Another Sphere vulnerability in Libretime HV 3.0.0
libretime hv3.0.0-alpha.10 is affected by a path manipulation vulnerability in /blob/master/legacy/application/modules/rest/controllers/ShowImageController.php through the rename function.
network
low complexity
libretime CWE-610
critical
9.8