AthiraHari77 opened a new issue, #2265:
URL: https://github.com/apache/incubator-kie-issues/issues/2265

   2 high vulnerabilities are detected for DROOLS:
   
   A sensitive sink function was discovered in line 87 of the file 
kie-maven-plugin/src/main/java/org/kie/maven/plugin/DiskResourceStore.java. It 
causes a High severity Path/Directory Traversal vulnerability.
   
   'write' method of 'java.nio.file.Files' object could be abused to disclose 
or manipulate sensitive files:
   
   A sensitive sink function was discovered in line 84 of the file 
kie-maven-plugin/src/main/java/org/kie/maven/plugin/DiskResourceStore.java. It 
causes a High severity Path/Directory Traversal vulnerability.
   
   'createDirectories' method of 'java.nio.file.Files' object could be abused 
to disclose or manipulate sensitive files:


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]


---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to