CVE-2017-1000438: Openmicroscopy Omero

High severity, CVSS 8.3. EPSS: 0.9% chance of exploitation in the next 30 days.

In OMERO 5.3.3 or earlier a user could create an OriginalFile and adjust its path such that it now points to another user's file on the underlying filesystem, then manipulate the user's data.

Affected products

Published 2018-01-02. Last modified 2026-06-17.