Headline
GHSA-8h43-xg5g-9cj7: Microweber vulnerable to unrestricted malicious uploads
Unrestricted Upload of File with Dangerous Type in GitHub repository microweber/microweber. There has been a fix in commit 0d279ac81052ce7ee97c18c811a9b8e912189da0 that has not been released into main yet. It can be found on the dev branch.
Microweber vulnerable to unrestricted malicious uploads
Moderate severity GitHub Reviewed Published Dec 27, 2022 • Updated Dec 27, 2022
Related news
CVE-2022-4732: File Upload Filter Bypass in microweber
Unrestricted Upload of File with Dangerous Type in GitHub repository microweber/microweber prior to 1.3.2.