Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r875-m3xh-7f29

Опубликовано: 02 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 4.4

Описание

A path traversal vulnerability has been reported to affect several product versions. If a local attacker gains a user account, they can then exploit the vulnerability to read the contents of unexpected files or system data.

We have already fixed the vulnerability in the following versions: Qfinder Pro Mac 7.13.0 and later Qsync for Mac 5.1.5 and later QVPN Device Client for Mac 2.2.8 and later

A path traversal vulnerability has been reported to affect several product versions. If a local attacker gains a user account, they can then exploit the vulnerability to read the contents of unexpected files or system data.

We have already fixed the vulnerability in the following versions: Qfinder Pro Mac 7.13.0 and later Qsync for Mac 5.1.5 and later QVPN Device Client for Mac 2.2.8 and later

EPSS

Процентиль: 5%
0.00021
Низкий

4.4 Medium

CVSS4

Дефекты

CWE-22

Связанные уязвимости

nvd
около 1 месяца назад

A path traversal vulnerability has been reported to affect several product versions. If a local attacker gains a user account, they can then exploit the vulnerability to read the contents of unexpected files or system data. We have already fixed the vulnerability in the following versions: Qfinder Pro Mac 7.13.0 and later Qsync for Mac 5.1.5 and later QVPN Device Client for Mac 2.2.8 and later

EPSS

Процентиль: 5%
0.00021
Низкий

4.4 Medium

CVSS4

Дефекты

CWE-22