CVE-2022-31836 Information

Description

The leafInfo.match() function in Beego v2.0.3 and below uses path.join() to deal with wildcardvalues which can lead to cross directory risk.

Reference

https://github.com/beego/beego/issues/4961

Share on: