1.17.2
9 years ago
6 days ago
Known vulnerabilities in the wlc package. This does not include vulnerabilities belonging to this package’s dependencies.
Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.
Fix for free| Vulnerability | Vulnerable Version |
|---|---|
wlc is an A command-line utility for Weblate, translation tool with tight version control integration Affected versions of this package are vulnerable to Directory Traversal via unsanitized component slugs from the Weblate server during multi-translation downloads. An attacker can write files to arbitrary locations by crafting a malicious server response. How to fix Directory Traversal? Upgrade | [,1.17.2) |
wlc is an A command-line utility for Weblate, translation tool with tight version control integration Affected versions of this package are vulnerable to Insecure Storage of Sensitive Information via insecure configuration of the How to fix Insecure Storage of Sensitive Information? Upgrade | [,1.17.0) |
wlc is an A command-line utility for Weblate, translation tool with tight version control integration Affected versions of this package are vulnerable to Improper Certificate Validation in the SSL verification process. An attacker can intercept sensitive information by crafting malicious URLs that bypass SSL certificate validation. How to fix Improper Certificate Validation? Upgrade | [,1.17.0) |