Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hf6p-4rv2-9qrp

Опубликовано: 30 авг. 2021
Источник: github
Github: Прошло ревью
CVSS3: 5.5

Описание

Path Traversal in bikshed

This affects the package bikeshed before 3.0.0. This can occur when an untrusted source file containing include, include-code or include-raw block is processed. The contents of arbitrary files could be disclosed in the HTML output.

Пакеты

Наименование

bikeshed

pip
Затронутые версииВерсия исправления

< 3.0.0

3.0.0

EPSS

Процентиль: 57%
0.00353
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 4 лет назад

This affects the package bikeshed before 3.0.0. This can occur when an untrusted source file containing include, include-code or include-raw block is processed. The contents of arbitrary files could be disclosed in the HTML output.

CVSS3: 5.5
nvd
больше 4 лет назад

This affects the package bikeshed before 3.0.0. This can occur when an untrusted source file containing include, include-code or include-raw block is processed. The contents of arbitrary files could be disclosed in the HTML output.

EPSS

Процентиль: 57%
0.00353
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-22