Description
Hutool v5.8.17 and below was discovered to contain an information disclosure vulnerability via the File.createTempFile() function at /core/io/FileUtil.java.
Remediation
References
https://github.com/dromara/hutool/issues/3103
Related Vulnerabilities
CVE-2022-2596 Vulnerability in maven package org.webjars.npm:node-fetch
CVE-2023-40349 Vulnerability in maven package org.jenkins-ci.plugins:gogs-webhook
CVE-2019-12043 Vulnerability in maven package org.webjars.bower:remarkable
CVE-2022-29172 Vulnerability in maven package org.webjars.bower:auth0-lock