We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.
Please see our statement on Data Privacy.
In Apache Linkis <=1.3.1, due to the Manager module engineConn material upload does not check the zip path, This is a Zip Slip issue, which will lead to a potential RCE vulnerability. We recommend users upgrade the version of Linkis to version 1.3.2.
Reserved 2023-03-04 | Published 2023-04-10 | Updated 2024-10-22 | Assigner apacheCWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
4ra1n
lists.apache.org/thread/6n1vlvnyn441rm02zdqc0wnpckj8ltn8
www.openwall.com/lists/oss-security/2023/04/10/2
Support options