I Found a File Read Nobody Was Looking For
A path traversal in Camaleon CMS that only triggers under a weird combination of Rails 8, the Solid trio, and an S3 backend. Found by accident. Reproduced through stubbornness.
I investigato
2 min read
cve ruby path-traversal camaleon-cms vulnerability-research