Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-9vm3-r8gq-cr6x: Casdoor arbitrary file write vulnerability

Casdoor v1.97.3 was discovered to contain an arbitrary file write vulnerability via the fullFilePath parameter at /api/upload-resource.

ghsa
#vulnerability#git

Casdoor arbitrary file write vulnerability

High severity GitHub Reviewed Published Sep 10, 2022 • Updated Sep 15, 2022

Related news

CVE-2022-38638: Arbitrary file write/overwrite Vulnerability · Issue #1035 · casdoor/casdoor

Casdoor v1.97.3 was discovered to contain an arbitrary file write vulnerability via the fullFilePath parameter at /api/upload-resource.