OpenRefine is a powerful free, open source tool for working with messy data. Prior to version 3.7.5, an arbitrary file read vulnerability allows any unauthenticated user to read a file on a server. Version 3.7.5 fixes this issue.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| org.openrefine:database(Maven) | 0 | 3.7.5 | N/A |
CVSS Metrics