Vulnerabilities (CVE)

Filtered by vendor Elfinder.net.core Project Subscribe
Filtered by product Elfinder.net.core
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-23407 1 Elfinder.net.core Project 1 Elfinder.net.core 2024-02-28 5.0 MEDIUM 7.5 HIGH
This affects the package elFinder.Net.Core from 0 and before 1.2.4. The user-controlled file name is not properly sanitized before it is used to create a file system path.