CVE-2020-13953 is a vulnerability in Apache Tapestry
Published on September 30, 2020
In Apache Tapestry from 5.4.0 to 5.5.0, crafting specific URLs, an attacker can download files inside the WEB-INF folder of the WAR being run.
Products Associated with CVE-2020-13953
Want to know whenever a new CVE is published for Apache Tapestry? stack.watch will email you.
Exploit Probability
EPSS
2.65%
Percentile
84.45%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.