#cold-baseline clear

CVE-2018-20483: wget leaks HTTP Basic-Auth credentials into user.xdg.origin.url xattr

CVE-2018-20483: Wget stores credentials in extended file attributes (information-leak)

CVE-2023-43115: Ghostscript IJS device path-traversal/sandbox-escape via subprocess file delegation

CVE-2023-43115: Ghostscript IJS device bypasses -dSAFER (path-traversal + RCE)

CVE-2018-20483: wget --xattr leaks URL credentials into extended file attributes

CVE-2018-20483: wget --xattr leaks userinfo (user:password) into persistent extended attributes

CVE-2018-20483: wget stores plaintext credentials in xattr file metadata (information-leak)

CVE-2018-20483: wget --xattr leaks URL credentials into extended attributes

CVE-2018-20483: wget --xattr leaks HTTP Basic-Auth credentials into user.xdg.origin.url

CVE-2018-20483: wget stores plaintext credentials in POSIX extended file attributes

CVE-2018-20483: wget --xattr leaks credentials via user.xdg.origin.url