CVE-2020-7647

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
11/05/2020
Last modified:
07/11/2023

Description

All versions before 1.6.7 and all versions after 2.0.0 inclusive and before 2.8.2 of io.jooby:jooby and org.jooby:jooby are vulnerable to Directory Traversal via two separate vectors.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:jooby:jooby:*:*:*:*:*:*:*:* 1.6.7 (excluding)
cpe:2.3:a:jooby:jooby:*:*:*:*:*:*:*:* 2.0.0 (including) 2.8.2 (excluding)