dxa-web-application-java icon indicating copy to clipboard operation
dxa-web-application-java copied to clipboard

The application scanner has detected a vulnerability from DXA: "Path Traversal from URI".

Open sivasanikommu opened this issue 3 years ago • 0 comments

Using DXA version 2.2.18.

The application scanner has detected a vulnerability from DXA: "Path Traversal from URI". This originates from the following method: com.sdl.dxa.tridion.content.GenericStaticContentResolver.getStaticContentFileByPath(GenericStaticContentResolver.java:78)

Just wanted to check whether you are already aware of this vulnerability and whether a fix is available.

sivasanikommu avatar Dec 06 '22 09:12 sivasanikommu