296,760
Total vulnerabilities in the database
The unzip function in ZipUtil.java in Hutool before 4.1.12 allows remote attackers to overwrite arbitrary files via directory traversal sequences in a filename within a ZIP archive.
| Software | From | Fixed in |
|---|---|---|
| hutool / hutool | - | 4.1.12 |
cn.hutool / hutool-parent
|
- | 4.1.12 |
cn.hutool / hutool-all
|
- | 4.1.12 |
cn.hutool / hutool-core
|
- | 4.1.12 |