Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
5.7
CVE-2026-57825
- EPSS 0.31%
- Veröffentlicht 09.09.2026 00:00:00
- Zuletzt bearbeitet 14.09.2026 16:17:15
In the opam package before 2.5.2 for OCaml, the sandbox protection mechanism can be bypassed because symlinks are mishandled during use of .install files.
7.8
CVE-2026-41082
- EPSS 0.21%
- Veröffentlicht 16.04.2026 17:32:40
- Zuletzt bearbeitet 15.07.2026 02:21:12
In OCaml opam before 2.5.1, a .install field containing a destination filepath can use ../ to reach a parent directory.
1