HIGH7.5
GHSA-wfm3-gq9h-mrjm
Appwrite Directory Traversal vulnerability
Quick fix
GHSA-wfm3-gq9h-mrjm — appwrite/server-ce: upgrade to the fixed version with the command below.
composer require appwrite/server-ce:^0.12.2Details
The ACME-challenge endpoint in Appwrite 0.5.0 through 0.12.x before 0.12.2 allows remote attackers to read arbitrary local files via ../ directory traversal. In order to be vulnerable, `APP_STORAGE_CERTIFICATES/.well-known/acme-challenge` must exist on disk. (This pathname is automatically created if the user chooses to install Let's Encrypt certificates via Appwrite.)
Are you affected?
Enter the version of the package you're using.
Affected packages
Packagist/appwrite/server-ce
Introduced in:
0.5.0Fixed in: 0.12.2Fix
composer require appwrite/server-ce:^0.12.2References
- https://nvd.nist.gov/vuln/detail/CVE-2022-25377[ADVISORY]
- https://github.com/appwrite/appwrite/pull/2780[WEB]
- https://github.com/appwrite/appwrite/commit/892f6fa4ba0d44e2435ffad1a84542400cfb7a9b[WEB]
- https://dubell.io/unauthenticated-lfi-in-appwrite-0.5.0-0.12.1[WEB]
- https://github.com/appwrite/appwrite[PACKAGE]
- https://github.com/appwrite/appwrite/blob/0.12.0/app/controllers/general.php#L539[WEB]
- https://github.com/appwrite/appwrite/releases/tag/0.12.2[WEB]