CVE-2024-7058 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

A vulnerability in the sanitize_path function in parisneo/lollms-webui v10 - latest allows an attacker to bypass path sanitization by using relative paths such…
Medium CVSS: 4.4

CVE-2024-7058

A vulnerability in the sanitize_path function in parisneo/lollms-webui v10 - latest allows an attacker to bypass path sanitization by using relative paths such as './'. This can lead to unauthorized access to directories within the personality_folder on the victim's computer.
Vendor
Lollms
Product
Lollms Web Ui
CWE
CWE-23
Yayın Tarihi
2025-03-20 10:15:36
Güncelleme
2025-07-08 16:10:59
Source Identifier
security@huntr.dev
KEV Date Added
-

Kategoriler

Referanslar