CVE-2023-49793: CodeChecker has a Path traversal in `CodeChecker server` in the endpoint of `CodeChecker store`
ZIP files uploaded to the server-side endpoint handling a CodeChecker store
are not properly sanitized. An attacker can exercise a path traversal to make the CodeChecker server
load and display files from an arbitrary location on the server machine.
References
Detect and mitigate CVE-2023-49793 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →