Vulnerabilities > Pivotal Software > Cloud Foundry Diego > 0.1366.0

DATE CVE VULNERABILITY TITLE RISK
2018-06-06 CVE-2018-1265 Unrestricted Upload of File with Dangerous Type vulnerability in multiple products
Cloud Foundry Diego, release versions prior to 2.8.0, does not properly sanitize file paths in tar and zip files headers.
network
low complexity
pivotal-software cloudfoundry CWE-434
6.5