CVE-2022-4817

LOW

centic9 jgit-cookbook - Insecure Temp File

Title source: llm
STIX 2.1

Description

A vulnerability was found in centic9 jgit-cookbook. It has been declared as problematic. This vulnerability affects unknown code. The manipulation leads to insecure temporary file. The attack can be initiated remotely. The name of the patch is b8cb29b43dc704708d598c60ac1881db7cf8e9c3. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-216988.

References (4)

Core 4
Core References
Permissions Required, Third Party Advisory vdb-entry
https://vuldb.com/?id.216988
Permissions Required, Third Party Advisory signature permissions-required
https://vuldb.com/?ctiid.216988
Patch, Third Party Advisory issue-tracking
https://github.com/centic9/jgit-cookbook/pull/86

Scores

CVSS v3 3.1
EPSS 0.0051
EPSS Percentile 39.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-377 CWE-668
Status published
Products (1)
jgit-cookbook_project/jgit-cookbook < 2022-08-09
Published Dec 28, 2022
Tracked Since Feb 18, 2026