Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:35065
HistoryApr 13, 2022 - 1:39 a.m.

Path Traversal

2022-04-1301:39:33
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11
directory traversal
input sanitization
malicious symlink

EPSS

0.001

Percentile

21.9%

grunt is vulnerable to directory traversal. The vulnerability exists due to a lack of sanitization of input via the file.copy function allowing an attacker with write access to access restricted directory via a malicious symlink.