In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsLearn about Relative Path Traversal vulnerabilities in an interactive lesson.
Start learningUpgrade safecmd to version 0.1.1 or higher.
safecmd is a Call commands safely by checking them rigorously against an allow-list
Affected versions of this package are vulnerable to Relative Path Traversal via the extract_commands() function that lacks proper validation of relative paths. An unauthenticated attacker could gain access to files and directories outside the intended scope bypassing allowlist matching.