CVE-2023-31483: Cauldrondevelopment Cbang

High severity, CVSS 7.5. EPSS: 1% chance of exploitation in the next 30 days.

tar/TarFileReader.cpp in Cauldron cbang before bastet-v8.1.17 has a directory traversal during extraction that allows the attacker to create or write to files outside the current directory via a crafted tar archive.

Affected products

Published 2023-04-28. Last modified 2026-06-17.