Lucene search

K
osvGoogleOSV:GHSA-4VJ3-F849-5R48
HistoryJun 03, 2020 - 10:02 p.m.

Arbitrary File Read in Snyk Broker

2020-06-0322:02:21
Google
osv.dev
8

EPSS

0.001

Percentile

28.4%

All versions of snyk-broker before 4.80.0 are vulnerable to Arbitrary File Read. It allows arbitrary file reads for users with access to Snyk’s internal network by creating symlinks to match whitelisted paths.

EPSS

0.001

Percentile

28.4%

Related for OSV:GHSA-4VJ3-F849-5R48