VYPR

Class.upload.PHP

by Class.upload.php

Source repositories

CVEs (1)

  • CVE-2023-6551MedJan 4, 2024
    risk 0.28cvss 5.4epss 0.00

    As a simple library, class.upload.php does not perform an in-depth check on uploaded files, allowing a stored XSS vulnerability when the default configuration is used. Developers must be aware of that fact and use extension whitelisting accompanied by forcing the server to…