CVE-2021-23562
03.12.2021, 20:15
This affects the package plupload before 2.3.9. A file name containing JavaScript code could be uploaded and run. An attacker would need to trick a user to upload this kind of file.Enginsight
Vendor | Product | Version |
---|---|---|
tiny | plupload | 𝑥 < 2.3.9 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration
References