Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
All versions before 1.6.7 of org.jooby:jooby are vulnerable to Directory Traversal via two separate vectors.
All versions before 1.6.7 of org.jooby:jooby are vulnerable to Directory Traversal via two separate vectors.
Jooby is vulnerable to HTTP Response Splitting if DefaultHttpHeaders is set to false.
Jooby before has XSS via the default error handler.