Headline
GHSA-mcvg-g9wx-v5vx: Valine code injection vulnerability
Valine was discovered to contain a remote code execution (RCE) vulnerability which allows attackers to execute arbitrary code via a crafted POST request.
Valine code injection vulnerability
High severity GitHub Reviewed Published Sep 20, 2022 • Updated Sep 21, 2022
Related news
CVE-2022-38545: A XSS bug that can execute code(用户恶意修改 评论 的ua可触发XSS执行代码) · Issue #400 · xCss/Valine
Valine v1.4.18 was discovered to contain a remote code execution (RCE) vulnerability which allows attackers to execute arbitrary code via a crafted POST request.