fig. 01 — GHSA-vf5j-r2hw-2hrw, the advisory selected below
// advisories
GHSA-vf5j-r2hw-2hrw
UNKNOWN
A security issue was discovered in [Reva](https://github.com/opencloud-eu/reva) that enables a malicious user to bypass the scope validation of a public link. That allows it to access resources outside the scope of a public link.