Description
In Pallets Werkzeug before 0.15.5, SharedDataMiddleware mishandles drive names (such as C:) in Windows pathnames.
Remediation
References
Related Vulnerabilities
WordPress Plugin Stripe Payment for WooCommerce Security Bypass (3.7.9)
WordPress Plugin Contact Form 7-PayPal Add-on Cross-Site Request Forgery (1.3.4)
PHP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2007-2748)
WordPress Plugin Video Comments Webcam Recorder Cross-Site Scripting (1.55)