Digdag is an open source tool that to build, run, schedule, and monitor complex pipelines of tasks across various platforms. Treasure Data's digdag workload automation system is susceptible to a path traversal vulnerability if it's configured to store log files locally. This issue may lead to information disclosure and has been addressed in release version 0.10.5.1. Users are advised to upgrade. There are no known workarounds for this vulnerability.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published: 2024-02-14T01:12:05.181Z

Updated: 2024-08-14T18:51:43.903Z

Reserved: 2024-02-05T14:14:46.380Z

Link: CVE-2024-25125

cve-icon Vulnrichment

Updated: 2024-08-01T23:36:21.665Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-02-14T03:15:15.153

Modified: 2024-02-14T13:59:35.580

Link: CVE-2024-25125

cve-icon Redhat

No data.