Loading
The cmusatyalab/opendiamond repository through 10.1.1 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
Cite this page
CVE-2022-31506. CVEDatabase.com. Retrieved 3 May 2026. https://cvedatabase.com/cve/CVE-2022-31506
Use CWE-22, Cmu vendor hub and Opendiamond product page to widen CVE-2022-31506 into its surrounding weakness, vendor, and product context.