Today > vulnerabilities   -   You can now download lists of IOCs here!

CVE-2024-34528

May 6, 2024, 12:44 p.m.

Product(s) Impacted

WordOps

  • up to 3.20.0

Description

WordOps through 3.20.0 has a wo/cli/plugins/stack_pref.py TOCTOU race condition because the conf_path os.open does not use a mode parameter during file creation.

Weaknesses

Date

Published: May 6, 2024, 12:15 a.m.

Last Modified: May 6, 2024, 12:44 p.m.

Status : Awaiting Analysis

CVE has been recently published to the CVE List and has been received by the NVD.

More info

Source

cve@mitre.org

References