Description
Hutool v5.8.17 and below was discovered to contain an information disclosure vulnerability via the File.createTempFile() function at /core/io/FileUtil.java.
Remediation
References
https://github.com/dromara/hutool/issues/3103
Related Vulnerabilities
CVE-2023-5104 Vulnerability in npm package nocodb
CVE-2022-24913 Vulnerability in maven package com.fasterxml.util:java-merge-sort
CVE-2015-9243 Vulnerability in npm package hapi
CVE-2020-2142 Vulnerability in maven package org.jenkins-ci.plugins:p4
CVE-2020-2113 Vulnerability in maven package org.jenkins-ci.tools:git-parameter