HIGH 7.5 PyPI

Sanic arbitrary file read and directory traversal

GHSA-mpmf-hr8p-p49g · CVE-2017-16762 · PYSEC-2017-40

Published · Modified

AI SAST

Find this class of vulnerability in your own code

Corgea's AI-native static analysis detects vulnerabilities like this one across your repositories, ranks them by exploitability, and returns review-ready fixes.

Description

Sanic before 0.5.1 allows reading arbitrary files with directory traversal, as demonstrated by the /static/..%2f substring.

Ready to move

Start Securing

Free, no credit card | First findings in minutes