-
CVSS Score
-Basic Information
CVE ID
-
GHSA ID
-
EPSS Score
-
CWE
-
Published
-
Updated
-
KEV Status
-
Technology
-
The patches modify the creation of temporary files in DataSourceProvider, FileProvider, and Mime4JWorkaround to use Files.createTempFile(), addressing the insecure temporary file vulnerability. The identified functions are directly related to the vulnerability and its mitigation.
| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| org.jboss.resteasy:resteasy-core | maven | >= 6.0.0.Beta1, < 6.2.3.Final | 6.2.3.Final |
| org.jboss.resteasy:resteasy-core | maven | >= 5.0.0.Alpha1, < 5.0.6.Final | 5.0.6.Final |
| org.jboss.resteasy:resteasy-core | maven | >= 4.0.0.Beta1, < 4.7.8.Final | 4.7.8.Final |
| org.jboss.resteasy:resteasy-multipart-provider | maven | >= 6.0.0.Beta1, < 6.2.3.Final | 6.2.3.Final |
| org.jboss.resteasy:resteasy-multipart-provider | maven | >= 5.0.0.Alpha1, < 5.0.6.Final | 5.0.6.Final |
| org.jboss.resteasy:resteasy-multipart-provider | maven | >= 4.0.0.Beta1, < 4.7.8.Final | 4.7.8.Final |
| org.jboss.resteasy:resteasy-multipart-provider | maven | < 3.15.4.Final | 3.15.5.Final |
| org.jboss.resteasy:resteasy-core | maven | < 3.15.4.Final | 3.15.5.Final |
KEV Misses 88% of Exploited CVEs- Get the report