CVE-2025-67030

HIGH8.8EPSS 0.43%

Plexus-Utils has a Directory Traversal vulnerability in its extractFile method

發布日:2026/3/25修改日:2026/4/28

描述

Directory Traversal vulnerability in the extractFile method of org.codehaus.plexus.util.Expand in plexus-utils before 6d780b3378829318ba5c2d29547e0012d5b29642. This allows an attacker to execute arbitrary code

受影響套件(2)

CVSS 分數

來源版本嚴重程度向量
osvCVSS 3.1HIGH8.8CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

參考連結(9)