Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-67030

Опубликовано: 25 мар. 2026
Источник: debian
EPSS Низкий

Описание

Directory Traversal vulnerability in the extractFile method of org.codehaus.plexus.util.Expand in plexus-utils before 6d780b3378829318ba5c2d29547e0012d5b29642. This allows an attacker to execute arbitrary code

Пакеты

ПакетСтатусВерсия исправленияРелизТип
plexus-utils2unfixedpackage

Примечания

  • https://github.com/codehaus-plexus/plexus-utils/issues/294

  • https://github.com/codehaus-plexus/plexus-utils/commit/6d780b3378829318ba5c2d29547e0012d5b29642 (plexus-utils-4.0.3)

  • https://github.com/codehaus-plexus/plexus-utils/commit/36ea3526309d2842075bf018d45152816a37fc98 (plexus-utils-3.x)

EPSS

Процентиль: 48%
0.00247
Низкий

Связанные уязвимости

CVSS3: 8.8
ubuntu
11 дней назад

Directory Traversal vulnerability in the extractFile method of org.codehaus.plexus.util.Expand in plexus-utils before 6d780b3378829318ba5c2d29547e0012d5b29642. This allows an attacker to execute arbitrary code

CVSS3: 8.3
redhat
12 дней назад

Directory Traversal vulnerability in the extractFile method of org.codehaus.plexus.util.Expand in plexus-utils before 6d780b3378829318ba5c2d29547e0012d5b29642. This allows an attacker to execute arbitrary code

CVSS3: 8.8
nvd
11 дней назад

Directory Traversal vulnerability in the extractFile method of org.codehaus.plexus.util.Expand in plexus-utils before 6d780b3378829318ba5c2d29547e0012d5b29642. This allows an attacker to execute arbitrary code

CVSS3: 8.8
msrc
7 дней назад

Описание отсутствует

github
11 дней назад

Plexus-Utils has a Directory Traversal vulnerability in its extractFile method

EPSS

Процентиль: 48%
0.00247
Низкий