{"id":"CVE-2016-8752","aliases":["GHSA-m2rr-h6g4-9cm9","PYSEC-2017-105"],"url":"https://o3.security/vulnerability/CVE-2016-8752","summary":"Path Traversal in Apache Atlas","details":"Apache Atlas versions 0.6.0 (incubating), 0.7.0 (incubating), and 0.7.1 (incubating) allow access to the webapp directory contents by pointing to URIs like /js and /img.","published":"2017-08-29T20:29:00.437Z","modified":"2026-07-08T05:48:29.727106349Z","cvss":{"score":7.5,"severity":"HIGH","vector":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"},"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"Maven","name":"org.apache.atlas:atlas-common","fixedVersion":"0.8-incubating"}],"fix":null,"references":[{"type":"WEB","url":"https://lists.apache.org/thread.html/f7435d66b840daa2a38ad1329d639b70f5a9476e7580ae885d422e86%40%3Cdev.atlas.apache.org%3E"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-07-08T05:48:29.727106349Z"}}