{"id":"CVE-2019-11082","details":"core/api/datasets/internal/actions/Explode.java in the Dataset API in DKPro Core through 1.10.0 allows Directory Traversal, resulting in the overwrite of local files with the contents of an archive.","aliases":["GHSA-23gj-368h-92pq"],"modified":"2026-07-08T16:28:08.595461Z","published":"2019-05-10T16:29:01.673Z","references":[{"type":"FIX","url":"https://github.com/dkpro/dkpro-core/issues/1325"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/dkpro/dkpro-core","events":[{"introduced":"0"},{"last_affected":"a7fa46891e495ed10212ed6efefdb6e508054cc3"}],"database_specific":{"cpe":"cpe:2.3:a:dkpro-core_project:dkpro-core:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"last_affected":"1.10.0"}],"source":"CPE_RANGE"}}],"versions":["de.tudarmstadt.ukp.dkpro.core-1.10.0"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-11082.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N"}]}