Launch Week Day 1: Announcing Security Design Review
HIGH 7.5 NuGet

Directory Traversal in elFinder.AspNet

GHSA-pjxv-w3qj-j8m3 · CVE-2021-23415

Published · Modified

Description

This affects the package elFinder.AspNet before 1.1.1.
The user-controlled file name is not properly sanitized before it is used to create a file system path.

Ready to move

Start Securing

Free, no credit card | First findings in minutes