CVE-2022-31372: Wiris Mathtype
High severity, CVSS 7.5. EPSS: 1.3% chance of exploitation in the next 30 days.
Wiris Mathtype v7.28.0 was discovered to contain a path traversal vulnerability in the resourceFile parameter. This vulnerability is exploited via a crafted request to the resource handler.
Affected products
- Wiris Mathtype: version 7.28.0 only
Published 2022-06-16. Last modified 2026-06-17.