VDB

CVE-2021-34363

CVE-2021-34363 PUBLISHED

The thefuck (aka The Fuck) package before 3.31 for Python allows Path Traversal that leads to arbitrary file deletion via the "undo archive operation" feature.

EPSS 1.13% · 78.7th percentile

Risk Scores

EPSS Score
1.13%
78.7th percentile

Affected Products

VendorProductVersions
Ubuntu:24.04:LTSthefuck3.29-0.3, 0, 3.29-0.3ubuntu1
Ubuntu:16.04:LTSthefuck3.2-1, 0, 2.5.6-1
Ubuntu:18.04:LTSthefuck0, 3.11-2
Ubuntu:22.04:LTSthefuck0, 3.29-0.3
Ubuntu:25.10thefuck0, 3.32-0.4, 3.32-0.2
Ubuntu:20.04:LTSthefuck3.29-0.1, 0

Timeline

  • Jun 10, 2021 CVE Published
  • Jun 11, 2021 EPSS Score
  • Aug 12, 2021 EPSS Score
  • Oct 12, 2021 EPSS Score
  • Jan 6, 2022 EPSS Score
  • Jan 19, 2022 EPSS Score
  • Feb 4, 2022 EPSS Score
  • Feb 10, 2022 EPSS Score
  • Apr 1, 2022 EPSS Score
  • Jun 12, 2022 EPSS Score
  • Aug 12, 2022 EPSS Score
  • Oct 12, 2022 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›