CVE-2017-16198: Path Traversal
(updated )
ritp is vulnerable to a directory traversal issue whereby an attacker can gain access to the file system by placing ../
in the URL. Access is restricted to files with a file extension, so files such as /etc/passwd
are not accessible.
References
Detect and mitigate CVE-2017-16198 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →