Vulnerabilities (CVE)

Filtered by vendor Smarty Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-16831 1 Smarty 1 Smarty 2018-11-16 7.1 HIGH 5.9 MEDIUM
Smarty before 3.1.33-dev-4 allows attackers to bypass the trusted_dir protection mechanism via a file:./../ substring in an include statement.