Vendor
high
advisory
Arbitrary File Write in oras-go via Symlink-Chain Bypass
2 TTPsThe oras-go library contains a path traversal vulnerability in its OCI layer extraction logic that allows attackers to overwrite arbitrary files on the host filesystem via a symlink-chain bypass.
oras-go
arbitrary-file-write
path-traversal
library-vulnerability
supply-chain
2t
high
threat
ORAS Java SDK Path Traversal Vulnerability via Malicious Image Title Annotation
2 rules 1 TTPThe `pullArtifact` methods in `Registry` and `OCILayout` use the `org.opencontainers.image.title` annotation from a pulled manifest as a filename, resolving it against the caller supplied output directory without normalization or a containment check, allowing a manifest publisher to write blobs outside of the intended target directory.
oras-java-sdk
path-traversal
oras
java
2r
1t