Uploaded image for project: 'Flink'
  1. Flink
  2. FLINK-3478

Flink serves arbitary files through the web interface

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Resolved
    • Blocker
    • Resolution: Fixed
    • 0.10.0, 0.10.1, 1.0.0
    • 1.0.0
    • Runtime / Web Frontend
    • None

    Description

      Flink serves arbitrary files through the web server of the 8081 port, e.g. ../../../../../../../../../../etc/passwd.

      The requested path needs to be validated before it is served.

      Attachments

        Activity

          People

            uce Ufuk Celebi
            mxm Maximilian Michels
            Votes:
            1 Vote for this issue
            Watchers:
            5 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: