Luracast Restler directory traversal vulnerability
High severity
GitHub Reviewed
Published
May 13, 2022
to the GitHub Advisory Database
•
Updated Apr 23, 2025
Description
Published by the National Vulnerability Database
Oct 15, 2017
Published to the GitHub Advisory Database
May 13, 2022
Reviewed
Apr 23, 2025
Last updated
Apr 23, 2025
Directory traversal vulnerability in public/examples/resources/getsource.php in Luracast Restler through 3.0.0, as used in the restler extension before 1.7.1 for TYPO3, allows remote attackers to read arbitrary files via the file parameter.
References