5.5
CVSSv3

CVE-2022-0436

Published: 12/04/2022 Updated: 06/04/2023
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 188
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Path Traversal in GitHub repository gruntjs/grunt before 1.5.2.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gruntjs grunt

Vendor Advisories

Debian Bug report logs - #1009676 grunt: CVE-2022-0436 - Path Traversal in grunt prior to 152 Package: src:grunt; Maintainer for src:grunt is Debian Javascript Maintainers <pkg-javascript-devel@listsaliothdebianorg>; Reported by: Neil Williams <codehelp@debianorg> Date: Thu, 14 Apr 2022 08:27:01 UTC Severity: i ...
filecopy operations in GruntJS are not protected against symlink traversal for both source and destination directories ...

Github Repositories

WP REST API enhancement to return JSON arrays containing localized strings registered with WordPress' wp_localize_script() function

RESTful Localized Scripts Contributors: shooper Donate link: shawnhooperca/ Tags: javascript, i18n, api Requires at least: 44 Tested up to: 442 Stable tag: trunk License: GPLv2 or later License URI: wwwgnuorg/licenses/gpl-20html WP REST API enhancement to return JSON arrays containing localized strings registered with WordPress' wp_localize_script()

Adds links to posts in other languages into the results of a WP REST API query for sites running the WPML plugin.

WPML REST API Contributors: shooper Donate link: shawnhooperca/ Tags: wpml, api, rest Requires at least: 52 Tested up to: 642 Requires PHP: 74 Stable tag: trunk License: GPLv2 or later License URI: wwwgnuorg/licenses/gpl-20html Get translations details with the WP REST API on sites running WordPress & WPML Description This plugin adds links to pag