Launch Week Day 1: Announcing Security Design Review
HIGH 7.5 NuGet

Path Traversal in elFinder.Net.Core

GHSA-mvvp-gwgc-5hrp · CVE-2021-23407

Published · Modified

Description

This affects the package elFinder.Net.Core from 0 and before 1.2.4. The user-controlled file name is not properly sanitized before it is used to create a file system path.

Ready to move

Start Securing

Free, no credit card | First findings in minutes