Vulnerabilities > Nocodb

DATE CVE VULNERABILITY TITLE RISK
2023-06-19 CVE-2023-35843 Path Traversal vulnerability in Nocodb
NocoDB through 0.106.0 (or 0.109.1) has a path traversal vulnerability that allows an unauthenticated attacker to access arbitrary files on the server by manipulating the path parameter of the /download route.
network
low complexity
nocodb CWE-22
7.5