CVE-2013-2027: Jython Project Jython
Medium severity, CVSS 4.6. EPSS: 0.4% chance of exploitation in the next 30 days.
Jython 2.2.1 uses the current umask to set the privileges of the class cache files, which allows local users to bypass intended access restrictions via unspecified vectors.
Affected products
- Jython Project Jython: version 2.2.1 only
- Opensuse Opensuse: version 13.1 only; version 13.2 only
Published 2015-02-13. Last modified 2026-06-16.