CVE-2026-57825
בינונית 5.7
תיאור (מקור, אנגלית)
In the opam package before 2.5.2 for OCaml, the sandbox protection mechanism can be bypassed because symlinks are mishandled during use of .install files.
מדדים
- CVSS 3.1
-
5.7 (MEDIUM)
מקור הציון: CNA
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:N - EPSS — סבירות ניצול
- 0% (אחוזון 000) נכון ל-9/10/2026
- CWE
- CWE-61