Insecure Temporary File in gradle - CVE-2021-29429
Published: May 20, 2022 / Updated: May 20, 2022
gradle
Gradle
Description
The vulnerability allows a local user to gain access to sensitive information.
The vulnerability exists due to remote files accessed through TextResourceFactory being downloaded into the system temporary directory first. A local user with access to the system can view contents of files and gain access to sensitive information.