Executive brief
Hoverfly allows an arbitrary file read in the `/api/v2/simulation` endpoint (`GHSL-2023-274`) in github.com/SpectoLabs/hoverfly
Affected products
- Go github.com/SpectoLabs/hoverfly
Junglewise Threat Intelligence
CVE-2024-45388 · Severity: low · CVSS 3.1 · Published 2024-09-06
Technologies: github.com/SpectoLabs/hoverfly (Go). Vendors: Go.
Hoverfly allows an arbitrary file read in the `/api/v2/simulation` endpoint (`GHSL-2023-274`) in github.com/SpectoLabs/hoverfly