Description
Hutool v5.8.17 and below was discovered to contain an information disclosure vulnerability via the File.createTempFile() function at /core/io/FileUtil.java.
Remediation
References
https://github.com/dromara/hutool/issues/3103
Related Vulnerabilities
CVE-2020-11971 Vulnerability in maven package org.apache.camel:camel-management
CVE-2011-4367 Vulnerability in maven package org.apache.myfaces.core:myfaces-impl
CVE-2021-39134 Vulnerability in npm package @npmcli/arborist
CVE-2020-27666 Vulnerability in npm package strapi-plugin-content-manager
CVE-2020-13920 Vulnerability in maven package org.apache.activemq:activemq-core