Launch Week Day 1: Announcing Security Design Review
HIGH 7.8 Maven

Path Traversal in OWASP Dependency-Check

GHSA-hcwx-7q5v-vc67 · CVE-2018-12036

Published · Modified

Description

OWASP Dependency-Check before 3.2.0 allows attackers to write to arbitrary files via a crafted archive that holds directory traversal filenames.

Ready to move

Start Securing

Free, no credit card | First findings in minutes