Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-49wm-4fp6-h59c: OctoPrint vulnerable to Unrestricted Upload of File with Dangerous Type

OctoPrint prior to version 1.8.3 is vulnerable to Unrestricted Upload of File with Dangerous Type. Due to misconfiguration in move file functionality, an attacker could easily change the file extension of an uploaded malicious file disguised as a .gcode file. Version 1.8.3 contains a patch.

ghsa
#git

OctoPrint vulnerable to Unrestricted Upload of File with Dangerous Type

Low severity GitHub Reviewed Published Sep 22, 2022 • Updated Sep 23, 2022

ghsa: Latest News

GHSA-486g-47cc-8wxf: aiocpa contains credential harvesting code