CVE-2021-43685
9.8CRITICALlibretime hv3.0.0-alpha.10 is affected by a path manipulation vulnerability in /blob/master/legacy/application/modules/rest/controllers/ShowImageController.php through the rename function.
Published: 12/1/2021Updated: 11/21/2024
Description
libretime hv3.0.0-alpha.10 is affected by a path manipulation vulnerability in /blob/master/legacy/application/modules/rest/controllers/ShowImageController.php through the rename function.
AI AnalysisPowered by AI
Affected Products
libretimelibretime_hv
3.0.0
References
- https://github.com/LibreTime/libretime/issues/1437Broken LinkThird Party Advisory
- https://github.com/LibreTime/libretime/issues/1437Broken LinkThird Party Advisory