Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
aerc before 93bec0d allows directory traversal in commands/msgview/open.go because of direct path concatenation of the name of an attachment part,
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N
Vulnerability Type
相对路径遍历
Vulnerability Title
aerc 安全漏洞
Vulnerability Description
aerc是Robin Jarry个人开发者的一个库。 aerc 93bec0d之前版本存在安全漏洞,该漏洞源于直接路径连接附件部分名称,可能导致目录遍历攻击。
CVSS Information
N/A
Vulnerability Type
N/A