3.3
CVSSv3

CVE-2023-0481

Published: 24/02/2023 Updated: 07/03/2023
CVSS v3 Base Score: 3.3 | Impact Score: 1.4 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

In RestEasy Reactive implementation of Quarkus the insecure File.createTempFile() is used in the FileBodyHandler class which creates temp files with insecure permissions that could be read by a local user.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

quarkus quarkus

Vendor Advisories

Synopsis Moderate: Red Hat build of Quarkus 2138 release and security update Type/Severity Security Advisory: Moderate Topic An update is now available for Red Hat build of Quarkus Red Hat Product Security has rated this update as having a security impact of Moderate A Common Vulnerability Scoring System (CVSS) base score, which gives a d ...
Description<!----> This CVE is under investigation by Red Hat Product Security ...