GHSA-w6q2-m8gg-pjv5
GitHub Security Advisory
⚠ Unreviewed
MODERATE
Has CVE
Advisory Details
IBM Robotic Process Automation with Automation Anywhere 11 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request containing "dot dot" sequences (/../) to upload arbitrary files to the system. IBM X-Force ID: 155008.
Related CVEs
Key Information
5.0
/10
Dataset
Last updated: September 4, 2025 6:33 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.