CVE-2021-41641

Published
View on NVD ↗
CVSS v3
8.4
HIGH
CVSS v2
3.6
LOW
Affected
1
PROJECT

Description

Deno <=1.14.0 file sandbox does not handle symbolic links correctly. When running Deno with specific write access, the Deno.symlink method can be used to gain access to any directory.

A modern runtime for JavaScript and TypeScript.
GitHubGitHub
107K