CWE-377

Insecure Temporary File

Parent: CWE-668 - Exposure of Resource to Wrong Sphere

Creating and using insecure temporary files can leave application and system data vulnerable to attack.

89 vulnerabilities with CWE-377
CVE-2024-2313 LOW
bpftrace - Privilege Escalation
CVSS 2.8
CVE-2024-23287 MEDIUM
Apple Ipados < 17.4 - Denial of Service
CVSS 5.5
CVE-2024-22236 LOW
Spring Cloud Contract <4.1.1, <4.0.5, <3.1.10 - Info Disclosure
CVSS 3.3
CVE-2023-49347 MEDIUM
Budgie Extras Windows Previews - Info Disclosure
CVSS 6.0
CVE-2023-49346 MEDIUM
Budgie Extras WeatherShow - Info Disclosure
CVSS 6.0
CVE-2023-49345 MEDIUM
Budgie Extras Takeabreak - Info Disclosure
CVSS 6.0
CVE-2023-49344 MEDIUM
Budgie Extras Window Shuffler - Info Disclosure
CVSS 6.0
CVE-2023-49342 MEDIUM
Budgie Extras Clockworks - Info Disclosure
CVSS 6.0
CVE-2023-43498 HIGH
Jenkins <2.423-2.414.1 - Info Disclosure
CVSS 8.1
CVE-2023-2800 MEDIUM
huggingface/transformers <4.30.0 - Info Disclosure
CVSS 4.7
CVE-2022-34387 MEDIUM
Dell Supportassist For Business Pcs < 3.2.0 - Exposure to Wrong Actor
CVSS 6.4
CVE-2022-24913 MEDIUM
Java-merge-sort < 1.1.0 - Exposure to Wrong Actor
CVSS 5.5
CVE-2022-4817 LOW
centic9 jgit-cookbook - Insecure Temp File
CVSS 3.1
CVE-2022-26386 MEDIUM
Firefox ESR < 91.7 - Info Disclosure
CVSS 6.5
CVE-2022-4641 LOW
pig-vector - Insecure Temp File
CVSS 2.5
CVE-2022-41954 LOW
Mpxj < 10.14.1 - Information Disclosure
CVSS 3.3
CVE-2022-41946 MEDIUM
Postgresql Jdbc Driver < 42.2.27 - Information Disclosure
CVSS 4.7
CVE-2022-3969 LOW
OpenKM <6.3.11 - Insecure Temp File
CVSS 2.6
CVE-2022-3952 LOW
Manydesigns Portofino < 5.3.3 - Exposure to Wrong Actor
CVSS 2.6
CVE-2022-35631 MEDIUM
Velociraptor <0.6.5.2 - Symlink Attack
CVSS 5.5
CVE-2022-21809 HIGH
InHand Networks InRouter302 V3.5.4 - File Write
CVSS 8.1
CVE-2022-0315 HIGH
horovod <0.24.0 - Info Disclosure
CVSS 7.5
CVE-2022-21945 MEDIUM
opensuse factory cscreen <1.2-1.3 - DoS
CVSS 5.1
CVE-2022-0736 HIGH
mlflow/mlflow <1.23.1 - Info Disclosure
CVSS 7.5
CVE-2021-22572 MEDIUM
File.createTempFile - Info Disclosure
CVSS 5.5
Details
Vulnerabilities 89