Description
Users with write permissions to a repository can delete arbitrary directories.
Remediation
References
http://www.openwall.com/lists/oss-security/2022/11/15/3
https://lists.apache.org/thread/1odl4p85r96n27k577jk6ftrp19xfc27
Related Vulnerabilities
CVE-2023-3691 Vulnerability in maven package org.webjars.npm:github-com-layui-layui
CVE-2019-0205 Vulnerability in maven package org.webjars.bower:thrift
CVE-2020-28472 Vulnerability in maven package org.webjars.bower:aws-sdk
CVE-2023-3635 Vulnerability in maven package com.squareup.okio:okio
CVE-2022-24197 Vulnerability in maven package com.itextpdf:itext7-core