First published: Fri Aug 12 2022(Updated: )
JetBrains Ktor before 2.1.0 was vulnerable to the Reflect File Download attack
Credit: cve@jetbrains.com
Affected Software | Affected Version | How to fix |
---|---|---|
JetBrains Ktor | <2.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2022-38179.
The severity rating of CVE-2022-38179 is medium.
The CWE ID for this vulnerability is 697 and 184.
The Reflect File Download attack affects JetBrains Ktor before version 2.1.0 by allowing an attacker to trick a user into downloading an arbitrary file from the server.
To fix the Reflect File Download vulnerability in JetBrains Ktor, you should update to version 2.1.0 or later.