CVE-2018-9159

Published
View on NVD ↗
CVSS v3
N/A
CVSS v2
5
MEDIUM
Affected
1
PROJECT

Description

In Spark before 2.7.2, a remote attacker can read unintended static files via various representations of absolute or relative pathnames, as demonstrated by file: URLs and directory traversal sequences. NOTE: this product is unrelated to Ignite Realtime Spark.

A simple expressive web framework for java. Spark has a kotlin DSL https://github.com/perwendel/spark-kotlin
GitHubGitHub
9.66K