ZeroHour

CVE-2021-41641

PoC ×2
CVSS 3.1
8.4 high
EPSS
<1%p32
Published
()
Modified
Description

Deno <=1.14.0 file sandbox does not handle symbolic links correctly. When running Deno with specific write access, the Deno.symlink method can be used to gain access to any directory.

Vendors
deno
Products
deno
Weakness
CWE-59
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.