Medium severity5.5NVD Advisory· Published Dec 25, 2022· Updated Jun 17, 2026
CVE-2020-36628
CVE-2020-36628
Description
A vulnerability classified as critical has been found in Calsign APDE. This affects the function handleExtract of the file APDE/src/main/java/com/calsignlabs/apde/build/dag/CopyBuildTask.java of the component ZIP File Handler. The manipulation leads to path traversal. Upgrading to version 0.5.2-pre2-alpha is able to address this issue. It is recommended to upgrade the affected component. The associated identifier of this vulnerability is VDB-216747.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- Android Processing Development Environment Project/Android Processing Development Environment2 versions
cpe:2.3:a:android_processing_development_environment_project:android_processing_development_environment:*:*:*:*:*:android:*:*+ 1 more
- cpe:2.3:a:android_processing_development_environment_project:android_processing_development_environment:*:*:*:*:*:android:*:*range: <0.5.2
- cpe:2.3:a:android_processing_development_environment_project:android_processing_development_environment:0.5.2:pre1_alpha:*:*:*:android:*:*
Patches
Vulnerability mechanics
References
3- github.com/Calsign/APDE/commit/c6d64cbe465348c1bfd211122d89e3117afadecfnvdPatchThird Party Advisory
- github.com/Calsign/APDE/releases/tag/v0.5.2-pre2-alphanvdRelease NotesThird Party Advisory
- vuldb.comnvdThird Party Advisory
News mentions
0No linked articles in our index yet.