Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
Uncontrolled File Write/Arbitrary File Creation (hackerone.com)
8 points by smartberry9 7 days ago | hide | past | favorite | 5 comments




I hope you’re not also the one who submitted this “vulnerability”. If you are, prepare to have your mind blown by `sudo rm /etc/passwd`.

Won't be surprised if this gets a CVE

You “wouldn’t be surprised” if curl issues a CVE for the existence of the -o flag?

It was sarcastic. Because of the ...low signal-noise ratio... in CVEs these days.

curl has become their own CNA specifically because so many useless CVEs about curl were being issued by other parties: https://daniel.haxx.se/blog/2024/01/16/curl-is-a-cna/



Consider applying for YC's Fall 2025 batch! Applications are open till Aug 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: