Groups
Groups
Sign in
Groups
Groups
Play Framework Security
Conversations
About
Send feedback
Help
CVE-2018-13864 - Path traversal vulnerability in Play assets controller
94 views
Skip to first unread message
James Roper
unread,
Jul 16, 2018, 9:09:01 PM
7/16/18
Reply to author
Sign in to reply to author
Forward
Sign in to forward
Delete
You do not have permission to delete messages in this group
Copy link
Report message
Show original message
Either email addresses are anonymous for this group or you need the view member email addresses permission to view the original message
to play-framew...@googlegroups.com
A path travernsal vulnerability has been found in the Play Assets controller when running on Windows.
This affects Play 2.6.12 through to 2.6.15, and is fixed in Play 2.6.16.
For details on this vulnerability, please see the advisory on the Play website:
https://www.playframework.com/security/vulnerability/CVE-2018-13864-PathTraversal
--
James Roper
Senior Developer, Office of the CTO
Lightbend
–
Build reactive apps!
Twitter:
@jroper
Reply all
Reply to author
Forward
0 new messages