Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:30413
HistoryMay 11, 2021 - 6:06 a.m.

Information Disclosure

2021-05-1106:06:23
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
6
vulnerability
information disclosure
file.createtempfile
attacker
temporary file
confidential information
software

EPSS

0.001

Percentile

29.1%

generator-maven-plugin is vulnerable to information disclosure. The use of the function File.createTempFile allows an attacker to predict the name of the temporary file and to gain access to the confidential information.

EPSS

0.001

Percentile

29.1%

Related for VERACODE:30413