VYPR
Unrated severityNVD Advisory· Published Apr 3, 2024· Updated Aug 28, 2024

CVE-2024-27705

CVE-2024-27705

Description

Cross Site Scripting vulnerability in Leantime v3.0.6 allows attackers to execute arbitrary code via upload of crafted PDF file to the files/browse endpoint.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.