{"id":"GSD-2021-1000010","summary":"temporary file creation (CWE-379) in fabric-samples version Prior to commit 6bccc138887b3dbd9dc920bad200068b11066ef7","details":"In Hyperledger fabric-samples version Prior to commit 6bccc138887b3dbd9dc920bad200068b11066ef7 a temporary file creation (CWE-379) exists in the digibank.sh and magnetocorp.sh that can be attacked via Local resulting in Information disclosure of all environmental variables","modified":"2023-03-14T07:04:18.324606Z","published":"2021-05-31T15:39:45.031586Z","withdrawn":"2023-03-14T07:04:18.324606Z","references":[{"type":"WEB","url":"https://github.com/hyperledger/fabric-samples/pull/440"},{"type":"WEB","url":"https://github.com/hyperledger/fabric-samples/pull/434"},{"type":"WEB","url":"https://hackerone.com/bugs?report_id=1124005&subject=user"}],"schema_version":"1.7.3"}