Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-49342

Опубликовано: 19 июн. 2026
Источник: redhat
CVSS3: 5.3
EPSS Низкий

Описание

YARD is a documentation generation tool for the Ruby programming language. Prior to version 0.9.44, YARD's static cache lookup reads a request path before the router's path cleanup runs. When a server is configured with a document root, a traversal path such as /../yard-cache-secret.html is joined against that root and can return a readable sibling .html file outside the intended static tree. Version 0.9.44 patches the issue.

A flaw was found in YARD, a documentation generation tool for the Ruby programming language. A remote attacker could exploit a path traversal vulnerability in YARD's static cache lookup. This occurs because the request path is read before the router's path cleanup, allowing a specially crafted request to access and read arbitrary .html files outside the intended static directory when a server is configured with a document root. This could lead to information disclosure.

Отчет

This Moderate impact path traversal vulnerability in YARD does not affect Red Hat products as the vulnerable code is not present.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat 3scale API Management Platform 23scale-amp21/backendNot affected
Red Hat 3scale API Management Platform 23scale-amp21/systemNot affected
Red Hat 3scale API Management Platform 23scale-amp22/backendNot affected
Red Hat 3scale API Management Platform 23scale-amp22/systemNot affected
Red Hat 3scale API Management Platform 23scale-amp2/backend-rhel8Not affected
Red Hat 3scale API Management Platform 23scale-amp2/system-rhel7Not affected
Red Hat 3scale API Management Platform 23scale-amp2/system-rhel8Not affected
Red Hat 3scale API Management Platform 23scale-amp2/system-rhel9Not affected
Red Hat Hardened Imagesnghttp2Not affected
Red Hat Hardened ImagesrustNot affected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-22
https://bugzilla.redhat.com/show_bug.cgi?id=2490894yard: YARD: Information disclosure via path traversal in static cache lookup

EPSS

Процентиль: 19%
0.00273
Низкий

5.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.3
ubuntu
около 2 месяцев назад

YARD is a documentation generation tool for the Ruby programming language. Prior to version 0.9.44, YARD's static cache lookup reads a request path before the router's path cleanup runs. When a server is configured with a document root, a traversal path such as `/../yard-cache-secret.html` is joined against that root and can return a readable sibling `.html` file outside the intended static tree. Version 0.9.44 patches the issue.

CVSS3: 5.3
nvd
около 2 месяцев назад

YARD is a documentation generation tool for the Ruby programming language. Prior to version 0.9.44, YARD's static cache lookup reads a request path before the router's path cleanup runs. When a server is configured with a document root, a traversal path such as `/../yard-cache-secret.html` is joined against that root and can return a readable sibling `.html` file outside the intended static tree. Version 0.9.44 patches the issue.

CVSS3: 5.3
debian
около 2 месяцев назад

YARD is a documentation generation tool for the Ruby programming langu ...

CVSS3: 5.3
github
около 1 месяца назад

YARD static cache reads raw traversal paths before router sanitization

EPSS

Процентиль: 19%
0.00273
Низкий

5.3 Medium

CVSS3