Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:40663
HistoryMay 24, 2023 - 6:36 a.m.

Information Disclosure

2023-05-2406:36:13
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9
akka-http
information disclosure
vulnerability
fileuploaddirectives
remote attacker
sensitive information

EPSS

0

Percentile

9.0%

com.typesafe.akka:akka-http is vulnerable to Information Disclosure. A remote unauthenticated attacker is able to gain access to of sensitive information due to the creation of temporary files with weak permissions via the FileUploadDirectives.fileUploadAll directive.

EPSS

0

Percentile

9.0%

Related for VERACODE:40663