Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:25543
HistoryJun 01, 2020 - 9:09 a.m.

Arbitrary File Read

2020-06-0109:09:09
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7

EPSS

0.001

Percentile

28.4%

snyk-broker is vulnerable to information disclosure. The vulnerability exists because it does not properly discard unused white-listed APIs, allowing a user with access to Snyk’s internal network to create symlinks to match white-listed paths.

EPSS

0.001

Percentile

28.4%

Related for VERACODE:25543