Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Morpheus65535

#31357of 53,634
8.2Total CVSS
Vulnerabilities · 1
PT-2024-28817
8.2
2024-07-20
Bazaar · Bazaar · CVE-2024-40348
**Name of the Vulnerable Software and Affected Versions** Bazaar versions prior to 1.4.3 **Description** An issue in the component /api/swaggerui/static of Bazaar allows unauthenticated attackers to execute a directory traversal. **Recommendations** For versions prior to 1.4.3, update to version 1.4.3 or later to resolve the issue. As a temporary workaround, consider restricting access to the /api/swaggerui/static component until a patch is available.