Safety vulnerability ID: 25925
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Paste Script 1.7.5 and earlier does not properly set group memberships during execution with root privileges, which might allow remote attackers to bypass intended file-access restrictions by leveraging a web application that uses the local filesystem.
Latest version: 3.6.0
A pluggable command-line frontend, including commands to setup package file layouts
Paste Script 1.7.5 and earlier does not properly set group memberships during execution with root privileges, which might allow remote attackers to bypass intended file-access restrictions by leveraging a web application that uses the local filesystem.
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application