CVE-2024-41228: Symlink
High severity, CVSS 7.6. EPSS: 0.3% chance of exploitation in the next 30 days.
A symlink following vulnerability in the pouch cp function of AliyunContainerService pouch v1.3.1 allows attackers to escalate privileges and write arbitrary files.
Affected products
- Symlink Symlink: version 1.31 only
Published 2024-09-23. Last modified 2026-06-17.