Published on: 06/10/2021 12:00:00 AM UTC
Last Modified on: 06/10/2021 11:58:00 AM UTC
The following vulnerability was found:
The thefuck (aka The Fuck) package before 3.31 for Python allows Path Traversal that leads to arbitrary file deletion via the "undo archive operation" feature.
- CVE-2021-34363 has been assigned by [email protected] to track the vulnerability
|NA: Fix possible changes in files outside of working directory (#1206) · nvbn/[email protected] · GitHub|| github.com |
|Release 3.31 · nvbn/thefuck · GitHub|| github.com |
|Advisory #48 - RyotaK's Vuln DB|| vuln.ryotak.me |