EPSS
Percentile
51.2%
The unzip function in ZipUtil.java in Hutool before 4.1.12 allows remote attackers to overwrite arbitrary files via directory traversal sequences in a filename within a ZIP archive.
github.com/advisories/GHSA-rhq2-2574-78mc
github.com/looly/hutool
github.com/looly/hutool/issues/162
nvd.nist.gov/vuln/detail/CVE-2018-17297