VYPR

EasyAdmin8

by EasyAdmin8

CVEs (2)

  • CVE-2026-54087higJul 14, 2026
    risk 0.45cvss epss

    EasyAdmin's `FileField` and `ImageField` accept browser-executable file types by default (`FileField` applies no MIME/extension restrictions; `ImageField`'s default `Image` constraint accepts SVG). When the upload directory is configured inside the public web root — as shown…

  • CVE-2023-3800LowJul 20, 2023
    risk 0.25cvss 3.9epss 0.01

    A vulnerability was found in EasyAdmin8 2.0.2.2. It has been classified as problematic. Affected is an unknown function of the file /admin/index/index.html#/admin/mall.goods/index.html of the component File Upload Module. The manipulation leads to unrestricted upload. The…