Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:4915
HistoryAug 15, 2017 - 10:49 p.m.

Write Files Outside Of Repository

2017-08-1522:49:54
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
13

0.014 Low

EPSS

Percentile

86.2%

Mercurial is vulnerable to files outside of the repository being overwritten. This is because the symlink auditing isn’t complete which allows attackers to write files outside of the repository.