Vulnerabilities > Peppermint > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-10-30 CVE-2023-46864 Path Traversal vulnerability in Peppermint
Peppermint Ticket Management through 0.2.4 allows remote attackers to read arbitrary files via a /api/v1/ticket/1/file/download?filepath=../ POST request.
network
low complexity
peppermint CWE-22
5.3