VDB
CVE-2019-8320
CVE-2019-8320
PUBLISHED
EPSS 6.22% · 91.1th percentile
Risk Scores
EPSS Score
6.22%
91.1th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Amazon | ruby20, ruby21, ruby24 |
Exploit Intelligence
- https://blog.rubygems.org/2019/03/05/security-advisories-2019-03.html (circl)
- RHSA-2019:1429 (circl)
- openSUSE-SU-2019:1771 (circl)
- [debian-lts-announce] 20200816 [SECURITY] [DLA 2330-1] jruby security update (circl)
- https://hackerone.com/reports/317321 (nist-nvd)
- Delete directory using symlink when decompressing tar (hackerone)
- Delete directory using symlink when decompressing tar (hackerone)
- Delete directory using symlink when decompressing tar (hackerone)
Timeline
- CVE Published
- Apr 11, 2019 PoC Published
- Apr 14, 2021 EPSS Score
- Jan 6, 2022 EPSS Score
- Mar 7, 2023 EPSS Score
- Mar 17, 2025 EPSS Score
- Mar 22, 2025 EPSS Score
- Mar 29, 2025 EPSS Score
- Mar 31, 2025 EPSS Score
- Apr 10, 2025 EPSS Score
- Apr 12, 2025 EPSS Score
- Apr 13, 2025 EPSS Score