CVE-2024-47531
Published Sep 30, 2024Scout is a web-based visualizer for VCF-files. Due to the lack of sanitization in the filename, it is possible bypass intended file extension and make users download malicious fil…
Vendor/product archive
4 CVEs tagged to clinical-genomics / scout — 0 Critical, 2 High, 2 Medium, 0 Low, 0 Unrated.
Scout is a web-based visualizer for VCF-files. Due to the lack of sanitization in the filename, it is possible bypass intended file extension and make users download malicious fil…
Scout is a web-based visualizer for VCF-files. Open redirect vulnerability allows performing phishing attacks on users by redirecting them to malicious page. /login API endpoint i…
Server-Side Request Forgery in scout in GitHub repository clinical-genomics/scout prior to v4.42. An attacker could make the application perform arbitrary requests to fishing stea…
Path Traversal due to `send_file` call in GitHub repository clinical-genomics/scout prior to 4.52.