VYPR
Unrated severityNVD Advisory· Published Dec 6, 2022· Updated Apr 23, 2025

Arbitrary file access in KodExplorer

CVE-2022-46154

Description

Kodexplorer is a chinese language web based file manager and browser based code editor. Versions prior to 4.50 did not prevent unauthenticated users from requesting arbitrary files from the host OS file system. As a result any files available to the host process may be accessed by arbitrary users. This issue has been addressed in version 4.50. Users are advised to upgrade. There are no known workarounds for this issue.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • Kodcloud/Kodexplorerllm-create2 versions
    < 4.50+ 1 more
    • (no CPE)range: < 4.50
    • (no CPE)range: < 4.50

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.