Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 6

Количество 6

ubuntu логотип

CVE-2025-53103

около 1 года назад

JUnit is a testing framework for Java and the JVM. From version 5.12.0 to 5.13.1, JUnit's support for writing Open Test Reporting XML files can leak Git credentials. The impact depends on the level of the access token exposed through the OpenTestReportGeneratingListener. If these test reports are published or stored anywhere public, then there is the possibility that a rouge attacker can steal the token and perform elevated actions by impersonating the user or app. This issue as been patched in version 5.13.2.

CVSS3: 5.8
EPSS: Низкий
redhat логотип

CVE-2025-53103

около 1 года назад

JUnit is a testing framework for Java and the JVM. From version 5.12.0 to 5.13.1, JUnit's support for writing Open Test Reporting XML files can leak Git credentials. The impact depends on the level of the access token exposed through the OpenTestReportGeneratingListener. If these test reports are published or stored anywhere public, then there is the possibility that a rouge attacker can steal the token and perform elevated actions by impersonating the user or app. This issue as been patched in version 5.13.2.

CVSS3: 5.8
EPSS: Низкий
nvd логотип

CVE-2025-53103

около 1 года назад

JUnit is a testing framework for Java and the JVM. From version 5.12.0 to 5.13.1, JUnit's support for writing Open Test Reporting XML files can leak Git credentials. The impact depends on the level of the access token exposed through the OpenTestReportGeneratingListener. If these test reports are published or stored anywhere public, then there is the possibility that a rouge attacker can steal the token and perform elevated actions by impersonating the user or app. This issue as been patched in version 5.13.2.

CVSS3: 5.8
EPSS: Низкий
debian логотип

CVE-2025-53103

около 1 года назад

JUnit is a testing framework for Java and the JVM. From version 5.12.0 ...

CVSS3: 5.8
EPSS: Низкий
github логотип

GHSA-m43g-m425-p68x

около 1 года назад

junit-platform-reporting can leak Git credentials through its OpenTestReportGeneratingListener

CVSS3: 5.8
EPSS: Низкий
fstec логотип

BDU:2026-07578

около 1 года назад

Уязвимость Java-фреймворка JUnit, связанная с хранением критичной информации в открытом виде, позволяющая нарушителю повысить свои привилегии

CVSS3: 5.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-53103

JUnit is a testing framework for Java and the JVM. From version 5.12.0 to 5.13.1, JUnit's support for writing Open Test Reporting XML files can leak Git credentials. The impact depends on the level of the access token exposed through the OpenTestReportGeneratingListener. If these test reports are published or stored anywhere public, then there is the possibility that a rouge attacker can steal the token and perform elevated actions by impersonating the user or app. This issue as been patched in version 5.13.2.

CVSS3: 5.8
0%
Низкий
около 1 года назад
redhat логотип
CVE-2025-53103

JUnit is a testing framework for Java and the JVM. From version 5.12.0 to 5.13.1, JUnit's support for writing Open Test Reporting XML files can leak Git credentials. The impact depends on the level of the access token exposed through the OpenTestReportGeneratingListener. If these test reports are published or stored anywhere public, then there is the possibility that a rouge attacker can steal the token and perform elevated actions by impersonating the user or app. This issue as been patched in version 5.13.2.

CVSS3: 5.8
0%
Низкий
около 1 года назад
nvd логотип
CVE-2025-53103

JUnit is a testing framework for Java and the JVM. From version 5.12.0 to 5.13.1, JUnit's support for writing Open Test Reporting XML files can leak Git credentials. The impact depends on the level of the access token exposed through the OpenTestReportGeneratingListener. If these test reports are published or stored anywhere public, then there is the possibility that a rouge attacker can steal the token and perform elevated actions by impersonating the user or app. This issue as been patched in version 5.13.2.

CVSS3: 5.8
0%
Низкий
около 1 года назад
debian логотип
CVE-2025-53103

JUnit is a testing framework for Java and the JVM. From version 5.12.0 ...

CVSS3: 5.8
0%
Низкий
около 1 года назад
github логотип
GHSA-m43g-m425-p68x

junit-platform-reporting can leak Git credentials through its OpenTestReportGeneratingListener

CVSS3: 5.8
0%
Низкий
около 1 года назад
fstec логотип
BDU:2026-07578

Уязвимость Java-фреймворка JUnit, связанная с хранением критичной информации в открытом виде, позволяющая нарушителю повысить свои привилегии

CVSS3: 5.8
0%
Низкий
около 1 года назад

Уязвимостей на страницу