Vulnerabilities > Sphere Project

DATE CVE VULNERABILITY TITLE RISK
2022-07-11 CVE-2022-31547 Path Traversal vulnerability in Sphere Project Sphere 20200531
The noamezekiel/sphere repository through 2020-05-31 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
network
low complexity
sphere-project CWE-22
critical
9.3