Advisories for Maven/Org.apache.ode/Ode package

2018

Path Traversal

The ODE process deployment web service is sensible to deployment messages with forged names. Using a path as name can lead to directory traversal, resulting in the potential writing of files under unwanted locations, the overwriting of existing files or their deletion.