Vulnerabilities
Vulnerable Software
Versions of the package com.fasterxml.util:java-merge-sort before 1.1.0 are vulnerable to Insecure Temporary File in the StdTempFileProvider() function in StdTempFileProvider.java, which uses the permissive File.createTempFile() function, exposing temporary file contents.
CVSS Score
5.5
EPSS Score
0.0
Published
2023-01-12


Contact Us

Shodan ® - All rights reserved