Description
FUXA <= 1.1.12 is vulnerable to Local via Inclusion via /api/download.
Remediation
References
https://github.com/MateusTesser/CVE-2023-31718
https://youtu.be/VCQkEGntN04
https://github.com/frangoteam/FUXA
Related Vulnerabilities
CVE-2017-5648 Vulnerability in maven package org.apache.tomcat:tomcat-catalina
CVE-2010-2076 Vulnerability in maven package org.apache.axis2:axis2-kernel
CVE-2021-41174 Vulnerability in npm package @grafana/data
CVE-2015-5170 Vulnerability in maven package org.cloudfoundry.identity:cloudfoundry-identity-login