This is a heavily interactive web application, and JavaScript is required. Simple HTML interfaces are possible, but that is not what this is.
Post
BaseFortify.eu
basefortify.bsky.social
did:plc:giplx3mfo7nnb44f3yzhclu3
Technical details:
• CWE-29: Path Traversal
• Unsafe tar.gz extraction
• No validation of file paths
• Allows overwrite outside target dir
Impact: File overwrite → privilege escalation
#Vulnerability #InfoSec #CWE29 #DevSecOps
2026-03-30T07:55:20.211Z