Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xrh7-29mh-fp98

Опубликовано: 04 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

An arbitrary file overwrite vulnerability in the file import process of Tarot, Astro & Healing v11.4.0 allows attackers to overwrite critical internal files, potentially leading to arbitrary code execution or exposure of sensitive information.

An arbitrary file overwrite vulnerability in the file import process of Tarot, Astro & Healing v11.4.0 allows attackers to overwrite critical internal files, potentially leading to arbitrary code execution or exposure of sensitive information.

EPSS

Процентиль: 31%
0.00122
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-22
CWE-434

Связанные уязвимости

CVSS3: 6.5
nvd
2 месяца назад

An arbitrary file overwrite vulnerability in the file import process of Tarot, Astro & Healing v11.4.0 allows attackers to overwrite critical internal files, potentially leading to arbitrary code execution or exposure of sensitive information.

EPSS

Процентиль: 31%
0.00122
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-22
CWE-434