Description
Directory traversal vulnerability in swig-templates thru 2.0.4 and swig thru 1.4.2, allows attackers to read arbitrary files via the include or extends tags.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-0832 | Directory traversal vulnerability in swig-templates thru 2.0.4 and swig thru 1.4.2, allows attackers to read arbitrary files via the include or extends tags. |
Github GHSA |
GHSA-2rq5-699j-x7p6 | Arbitrary local file read vulnerability during template rendering |
References
| Link | Providers |
|---|---|
| https://github.com/node-swig/swig-templates/issues/88 |
|
History
Tue, 04 Mar 2025 03:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-02-27T18:28:56.823Z
Reserved: 2023-02-06T00:00:00.000Z
Link: CVE-2023-25345
Updated: 2024-08-02T11:18:36.343Z
Status : Modified
Published: 2023-03-15T20:15:10.533
Modified: 2025-02-27T19:15:48.070
Link: CVE-2023-25345
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA