HIGHMaven

Quarkus does not properly sanitize artifacts created from its use of the Gradle plugin, allowing certain build system information to remain

Quarkus does not properly sanitize artifacts created from its use of the Gradle plugin, allowing certain build system information to remain

CVE-2023-5720Published 2 years agoUpdated 5 days agoSource: OSV

Affected packages

  • io.quarkus:quarkus-project≥ 3.0.0.CR1

Exploit signal

Known exploited (CISA KEV)
No
EPSS score
EPSS percentile

EPSS is the probability a CVE is exploited in the wild; percentile is its rank among all CVEs.

Quarkus does not properly sanitize artifacts created from its use of the Gradle plugin, allowing certain build system information to remain | HackTribune