Vulnerabilities > Alibabagroup

DATE CVE VULNERABILITY TITLE RISK
2022-05-01 CVE-2022-25842 Path Traversal vulnerability in Alibabagroup One-Java-Agent
All versions of package com.alibaba.oneagent:one-java-agent-plugin are vulnerable to Arbitrary File Write via Archive Extraction (Zip Slip) using a specially crafted archive that holds directory traversal filenames (e.g.
network
low complexity
alibabagroup CWE-22
critical
9.8