PT-2023-16110 · Bits And Blooms · Bloom

Published

2023-01-12

·

Updated

2023-01-20

·

CVE-2023-0247

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions bits-and-blooms/bloom versions prior to 3.3.1
Description The issue is related to an Uncontrolled Search Path Element in the GitHub repository bits-and-blooms/bloom.
Recommendations For versions prior to 3.3.1, update to version 3.3.1 or later to resolve the issue.

Exploit

Fix

Uncontrolled Search Path Element

Weakness Enumeration

Related Identifiers

CVE-2023-0247
GHSA-FGWP-PWQQ-G3W4

Affected Products

Bloom