An issue in the ?filename= argument of the route /DataPackageTable in FreeTAKServer-UI v1.9.8 allows attackers to place arbitrary files anywhere on the system.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-25511.json"