Manydesigns · Manydesigns Portofino · CVE-2022-3952
**Name of the Vulnerable Software and Affected Versions**
ManyDesigns Portofino version 5.3.2
**Description**
A vulnerability has been found in ManyDesigns Portofino, where the function `createTempDir` of the file `WarFileLauncher.java` is affected. The manipulation leads to the creation of a temporary file in a directory with insecure permissions.
**Recommendations**
For ManyDesigns Portofino version 5.3.2, upgrade to version 5.3.3 to address this issue. As a temporary workaround, consider restricting access to the `createTempDir` function of the `WarFileLauncher.java` file until the upgrade is applied.