CVE-2023-31483: Cauldrondevelopment Cbang
High severity, CVSS 7.5. EPSS: 1% chance of exploitation in the next 30 days.
tar/TarFileReader.cpp in Cauldron cbang before bastet-v8.1.17 has a directory traversal during extraction that allows the attacker to create or write to files outside the current directory via a crafted tar archive.
Affected products
- Cauldrondevelopment Cbang: before 8.1.17 (fixed in 8.1.17)
Published 2023-04-28. Last modified 2026-06-17.