chainlit is vulnerable to Path Traversal
98
Critical Risk
Affected versions of the package are vulnerable to path traversal due to a weakness in the translations API. The language parameter is not properly sanitized, allowing attackers to manipulate the input and navigate the file system beyond the intended directories. This could lead to unauthorized access to files or data outside of the expected directory structure.
You are affected if you are using a version that falls within the vulnerable range.
chainlit is vulnerable to Path Traversal in versions 0.1.1 - 1.1.404.
Upgrade the chainlit library to the patch version.
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant