Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-8h43-xg5g-9cj7: Microweber vulnerable to unrestricted malicious uploads

Unrestricted Upload of File with Dangerous Type in GitHub repository microweber/microweber. There has been a fix in commit 0d279ac81052ce7ee97c18c811a9b8e912189da0 that has not been released into main yet. It can be found on the dev branch.

ghsa
#web#git

Microweber vulnerable to unrestricted malicious uploads

Moderate severity GitHub Reviewed Published Dec 27, 2022 • Updated Dec 27, 2022

Related news

CVE-2022-4732: File Upload Filter Bypass in microweber

Unrestricted Upload of File with Dangerous Type in GitHub repository microweber/microweber prior to 1.3.2.