Headline
GHSA-9vm3-r8gq-cr6x: Casdoor arbitrary file write vulnerability
Casdoor v1.97.3 was discovered to contain an arbitrary file write vulnerability via the fullFilePath parameter at /api/upload-resource.
Casdoor arbitrary file write vulnerability
High severity GitHub Reviewed Published Sep 10, 2022 • Updated Sep 15, 2022
Related news
CVE-2022-38638: Arbitrary file write/overwrite Vulnerability · Issue #1035 · casdoor/casdoor
Casdoor v1.97.3 was discovered to contain an arbitrary file write vulnerability via the fullFilePath parameter at /api/upload-resource.