VYPR

Ktlint

by Ktlint Project

CVEs (1)

  • CVE-2019-1010260HigApr 2, 2019
    risk 0.00cvss 8.1epss 0.01

    Using ktlint to download and execute custom rulesets can result in arbitrary code execution as the served jars can be compromised by a MITM. This attack is exploitable via Man in the Middle of the HTTP connection to the artifact servers. This vulnerability appears to have been…