Beego Framework Incorrect Permission Assignment for Critical Resource Vulnerability - CVE-2019-16354 - Vulnerability Database

Beego Framework Incorrect Permission Assignment for Critical Resource Vulnerability - CVE-2019-16354

Medium
Reference: CVE-2019-16354
Title: Beego Framework Incorrect Permission Assignment for Critical Resource Vulnerability
Overview:

The File Session Manager in Beego 1.10.0 allows local users to read session files because there is a race condition involving file creation within a directory with weak permissions.