CVE-2021-33800

In Druid 1.2.3, visiting the path with parameter in a certain function can lead to directory traversal.

Summary:

In Druid 1.2.3, visiting the path with parameter in a certain function can lead to directory traversal.

Reference Links(if available):

  • https://security.alibaba.com/announcement/announcement?id=214
  • CVSS Score (if available)

    v2: / MEDIUM

    v3: /

    Links to Exploits(if available)