Directory traversal issues in the D-Mod extractor in DFArc and DFArc2 (as well as in RTsoft's Dink Smallwood HD / ProtonSDK version) before 3.14 allow an attacker to overwrite arbitrary files on the user's system.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2018-0496.json"