Vulnerabilities > Gradle > Gradle > 5.6.1

DATE CVE VULNERABILITY TITLE RISK
2023-10-06 CVE-2023-42445 Unspecified vulnerability in Gradle
Gradle is a build tool with a focus on build automation and support for multi-language development.
network
high complexity
gradle
5.3
2023-10-05 CVE-2023-44387 Unspecified vulnerability in Gradle
Gradle is a build tool with a focus on build automation and support for multi-language development.
local
low complexity
gradle
6.5
2023-06-30 CVE-2023-35946 Unspecified vulnerability in Gradle
Gradle is a build tool with a focus on build automation and support for multi-language development.
local
low complexity
gradle
5.5
2023-06-30 CVE-2023-35947 Unspecified vulnerability in Gradle
Gradle is a build tool with a focus on build automation and support for multi-language development.
network
high complexity
gradle
8.1
2021-07-20 CVE-2021-32751 OS Command Injection vulnerability in Gradle
Gradle is a build tool with a focus on build automation.
network
high complexity
gradle CWE-78
7.5
2021-04-13 CVE-2021-29428 In Gradle before version 7.0, on Unix-like systems, the system temporary directory can be created with open permissions that allow multiple users to create and delete files within it.
local
low complexity
gradle quarkus
7.8
2021-04-13 CVE-2021-29427 In Gradle from version 5.1 and before version 7.0 there is a vulnerability which can lead to information disclosure and/or dependency poisoning.
network
low complexity
gradle quarkus
7.2
2021-04-12 CVE-2021-29429 In Gradle before version 7.0, files created with open permissions in the system temporary directory can allow an attacker to access information downloaded by Gradle.
local
low complexity
gradle quarkus
5.5
2020-10-01 CVE-2020-11979 As mitigation for CVE-2020-1945 Apache Ant 1.10.8 changed the permissions of temporary files it created so that only the current user was allowed to access them.
network
low complexity
apache gradle fedoraproject oracle
7.5
2019-09-16 CVE-2019-16370 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Gradle
The PGP signing plugin in Gradle before 6.0 relies on the SHA-1 algorithm, which might allow an attacker to replace an artifact with a different one that has the same SHA-1 message digest, a related issue to CVE-2005-4900.
network
high complexity
gradle CWE-327
5.9