CVE-2017-15363: Luracast Restler

High severity, CVSS 7.5. EPSS: 15.3% chance of exploitation in the next 30 days.

Directory traversal vulnerability in public/examples/resources/getsource.php in Luracast Restler through 3.0.0, as used in the restler extension before 1.7.1 for TYPO3, allows remote attackers to read arbitrary files via the file parameter.

Affected products

  • Luracast Restler: before 1.7.1 (fixed in 1.7.1); before 3.0.0 (fixed in 3.0.0)

Published 2017-10-15. Last modified 2026-06-17.