Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g3hr-p86p-593h

Опубликовано: 28 мая 2024
Источник: github
Github: Прошло ревью
CVSS3: 8.3

Описание

OpenAPI Generator Online - Arbitrary File Read/Delete

Impact

Attackers can exploit the vulnerability to read and delete files and folders from an arbitrary, writable directory as anyone can set the output folder when submitting the request via the outputFolder option.

Patches

The issue was fixed via https://github.com/OpenAPITools/openapi-generator/pull/18652 (included in v7.6.0 release) by removing the usage of the outputFolder option.

Workarounds

No workaround available.

References

No other reference available.

Пакеты

Наименование

org.openapitools:openapi-generator-online

maven
Затронутые версииВерсия исправления

< 7.6.0

7.6.0

EPSS

Процентиль: 98%
0.5521
Средний

8.3 High

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 8.3
redhat
больше 1 года назад

OpenAPI Generator allows generation of API client libraries (SDK generation), server stubs, documentation and configuration automatically given an OpenAPI Spec. Prior to version 7.6.0, attackers can exploit a path traversal vulnerability to read and delete files and folders from an arbitrary, writable directory as anyone can set the output folder when submitting the request via the `outputFolder` option. The issue was fixed in version 7.6.0 by removing the usage of the `outputFolder` option. No known workarounds are available.

CVSS3: 8.3
nvd
больше 1 года назад

OpenAPI Generator allows generation of API client libraries (SDK generation), server stubs, documentation and configuration automatically given an OpenAPI Spec. Prior to version 7.6.0, attackers can exploit a path traversal vulnerability to read and delete files and folders from an arbitrary, writable directory as anyone can set the output folder when submitting the request via the `outputFolder` option. The issue was fixed in version 7.6.0 by removing the usage of the `outputFolder` option. No known workarounds are available.

CVSS3: 8.3
fstec
больше 1 года назад

Уязвимость програмного средства автоматической генериции клиентских библиотек API OpenAPI Generator, связанная с неверным ограничением имени пути к каталогу с ограниченным доступом, позволяющая нарушителю обойти ограничения безопасности и получить доступ на чтение, изменение или удаление данных

EPSS

Процентиль: 98%
0.5521
Средний

8.3 High

CVSS3

Дефекты

CWE-22