2.21.0
20 years ago
4 months ago
Known vulnerabilities in the commons-io:commons-io package. This does not include vulnerabilities belonging to this package’s dependencies.
Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.
Fix for free| Vulnerability | Vulnerable Version |
|---|---|
commons-io:commons-io is a The Apache Commons IO library contains utility classes, stream implementations, file filters, file comparators, endian transformation classes, and much more. Affected versions of this package are vulnerable to Uncontrolled Resource Consumption ('Resource Exhaustion') through the How to fix Uncontrolled Resource Consumption ('Resource Exhaustion')? Upgrade | [2.0,2.14.0) |
commons-io:commons-io is a The Apache Commons IO library contains utility classes, stream implementations, file filters, file comparators, endian transformation classes, and much more. Affected versions of this package are vulnerable to Directory Traversal via calling the method FileNameUtils.normalize using an improper string like How to fix Directory Traversal? Upgrade | [0,2.7) |