未验证 提交 1f86fb4a 编写于 作者: M MaxKey 提交者: GitHub

Merge pull request #94 from...

Merge pull request #94 from BulkSecurityGeneratorProjectV2/fix/JLL/temporary_file_local_information_disclosure

[SECURITY] Fix Temporary File Information Disclosure Vulnerability
......@@ -31,6 +31,7 @@ import java.net.MalformedURLException;
import java.net.URI;
import java.net.URL;
import java.net.URLConnection;
import java.nio.file.Files;
import org.slf4j.Logger;
import org.slf4j.LoggerFactory;
......@@ -140,7 +141,7 @@ public final class NetUtil
try
{
tempFile = File.createTempFile("portecle", null);
tempFile = Files.createTempFile("portecle",null).toFile();
out = new BufferedOutputStream(new FileOutputStream(tempFile));
byte[] buf = new byte[2048];
int n;
......
Markdown is supported
0% .
You are about to add 0 people to the discussion. Proceed with caution.
先完成此消息的编辑!
想要评论请 注册