Vulnerabilities > Juce

DATE CVE VULNERABILITY TITLE RISK
2022-01-31 CVE-2021-23520 Path Traversal vulnerability in Juce
The package juce-framework/juce before 6.1.5 are vulnerable to Arbitrary File Write via Archive Extraction (Zip Slip) via the ZipFile::uncompressEntry function in juce_ZipFile.cpp.
network
low complexity
juce CWE-22
critical
9.8
2022-01-31 CVE-2021-23521 Link Following vulnerability in Juce
This affects the package juce-framework/JUCE before 6.1.5.
local
low complexity
juce CWE-59
7.8