VYPR
Unrated severityNVD Advisory· Published Jul 11, 2022· Updated Aug 3, 2024

CVE-2022-31530

CVE-2022-31530

Description

The csm-aut/csm repository through 3.5 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.

Affected products

2
  • csm-aut/csmdescription
  • csm-aut/csmllm-create
    Range: <=3.5

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.