CVE-2021-32814

HIGH

skytable < 0.5.1 - Path Traversal and Arbitrary File Manipulation

Title source: llm
STIX 2.1

Description

Skytable is a NoSQL database with automated snapshots and TLS. Versions prior to 0.5.1 are vulnerable to a a directory traversal attack enabling remotely connected clients to destroy and/or manipulate critical files on the host's file system. This security bug has been patched in version 0.5.1. There are no known workarounds aside from upgrading.

Scores

CVSS v3 8.8
EPSS 0.0209
EPSS Percentile 79.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-22
Status published
Products (1)
skytable/skytable < 0.5.1
Published Aug 03, 2021
Tracked Since Feb 18, 2026