file.copy. The manipulation leads to time-of-check time-of-use.
This vulnerability is traded as CVE-2022-1537. It is possible to initiate the attack remotely. There is no exploit available.
It is advisable to upgrade the affected component.
Intelligence View
⚡ tsecurity.de Intelligence
CVE-2022-1537 | GruntJS up to 1.5.2 file.copy toctou (Nessus ID 257956 / WID-SEC-2026-2460)
Reagiere als Erste:r — dein Feedback zählt!
A vulnerability, which was classified as critical, has been found in GruntJS up to 1.5.2. Affected is the function
SOCIAL SHARE CARD GENERATOR