CVE

Id
95997  
CVE No.
CVE-2016-9177  
Status
Candidate  
Description
Directory traversal vulnerability in Spark 2.5 allows remote attackers to read arbitrary files via a .. (dot dot) in the URI.  
Phase
Assigned (20161104)  
Votes
None (candidate not yet proposed)  
Comments