In JetBrains Kotlin prior to 1.4.21, a vulnerable Java API was used for temporary file and folder creation. An attacker was able to read data from such files and list directories due to insecure permissions.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
jetbrains kotlin |
||
oracle communications cloud native core network slice selection function 1.2.1 |
||
oracle communications cloud native core policy 1.14.0 |
||
oracle communications cloud native core service communication proxy 1.14.0 |