HIGH 7.5 NuGet
Directory Traversal in elFinder.AspNet
GHSA-pjxv-w3qj-j8m3 · CVE-2021-23415 · SNYK-DOTNET-ELFINDERASPNET-1315153
Published · Modified
AI SAST
Find this class of vulnerability in your own code
Corgea's AI-native static analysis detects vulnerabilities like this one across your repositories, ranks them by exploitability, and returns review-ready fixes.
Description
This affects the package elFinder.AspNet before 1.1.1.
The user-controlled file name is not properly sanitized before it is used to create a file system path.
Ready to move
Start Securing
Free, no credit card | First findings in minutes