CVE Published: 15/10/2020 |
CVE Updated: 05/08/2024 |
CVE Year: 2019 Source: eclipse |
Vendor: The Eclipse Foundation |
Product: Eclipse Vert.x Status : PUBLISHED
CVE-2019-17640 Description
In Eclipse Vert.x 3.4.x up to 3.9.4, 4.0.0.milestone1, 4.0.0.milestone2, 4.0.0.milestone3, 4.0.0.milestone4, 4.0.0.milestone5, 4.0.0.Beta1, 4.0.0.Beta2, and 4.0.0.Beta3, StaticHandler doesn\'t correctly processes back slashes on Windows Operating systems, allowing, escape the webroot folder to the current working directory.