The default configuration for bccache.FileSystemBytecodeCache
in Jinja2 before 2.7.2 does not properly create temporary files, which allows local users to gain privileges via a crafted .cache file with a name starting with __jinja2_
in /tmp
.
{ "nvd_published_at": "2014-05-19T14:55:00Z", "cwe_ids": [ "CWE-266" ], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2022-07-07T22:50:31Z" }