Improper limitation of a pathname to a restricted directory ('Path Traversal') issue exists in FitNesse releases prior to 20241026. If this vulnerability is exploited, an attacker may be able to know whether a file exists at a specific path, and/or obtain some part of the file contents under specific conditions.
{
"cwe_ids": [
"CWE-22"
],
"github_reviewed": true,
"nvd_published_at": "2024-11-15T06:15:04Z",
"severity": "MODERATE",
"github_reviewed_at": "2024-11-18T21:03:34Z"
}