Vulnerabilities > Umbral Project

DATE CVE VULNERABILITY TITLE RISK
2022-07-11 CVE-2022-31533 Path Traversal vulnerability in Umbral Project Umbral 20200115
The decentraminds/umbral repository through 2020-01-15 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
network
low complexity
umbral-project CWE-22
critical
9.3