lib/yard/core_ext/file.rb in the server in YARD before 0.9.11 does not block relative paths with an initial ../ sequence, which allows attackers to conduct directory traversal attacks and read arbitrary files.
CVSS Details
- CVSS 3.0 Base Score: 7.5
- CVSS 3.0 Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade yard | Jul 30, 2024 | Nov 28, 2017 |
| Suse | — | Upgrade yast2-buildtoolsUpgrade yast2-devtoolsUpgrade ruby2.1-rubygem-yard | Jul 7, 2018 | Nov 28, 2017 |
| Ubuntu | — | Upgrade yardUpgrade yard (Ubuntu Pro) | Apr 16, 2024 | Nov 28, 2017 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub