CVE-2021-28861 | Python up to 3.10 lib/http/server.py path traversal (FEDORA-2022-f511f8f58b / Nessus ID 211341)
A vulnerability has been found in Python up to 3.10 and classified as critical. Affected by this vulnerability is an unknown functionality in the library lib/http/server.py. The manipulation leads to path traversal.
This vulnerability is known as CVE-2021-28861. The attack needs to be initiated within the local network. There is no exploit available.
The real existence of this vulnerability is still doubted at the moment.
It is recommended to apply a patch to fix this issue.