cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2021-28650,https://securityvulnerability.io/vulnerability/CVE-2021-28650,,"autoar-extractor.c in GNOME gnome-autoar before 0.3.1, as used by GNOME Shell, Nautilus, and other software, allows Directory Traversal during extraction because it lacks a check of whether a file's parent is a symlink in certain complex situations. NOTE: this issue exists because of an incomplete fix for CVE-2020-36241.",Gnome,Gnome-autoar,5.5,MEDIUM,0.00046999999904073775,false,,false,false,false,,,false,false,,2021-03-17T05:51:33.000Z,0 CVE-2020-36241,https://securityvulnerability.io/vulnerability/CVE-2020-36241,,"autoar-extractor.c in GNOME gnome-autoar through 0.2.4, as used by GNOME Shell, Nautilus, and other software, allows Directory Traversal during extraction because it lacks a check of whether a file's parent is a symlink to a directory outside of the intended extraction location.",Gnome,Gnome-autoar,5.5,MEDIUM,0.000539999979082495,false,,false,false,false,,,false,false,,2021-02-05T07:11:07.000Z,0