Authenticated (Contributor+) Stored CrossSite Scripting via SVG File Upload vulnerability
6 August, 2024
Directory Traversal via handle_folders_file_upload vulnerability
14 June, 2024
Authenticated (Subscriber+) Stored CrossSite Scripting via User First Name and Last Name vulnerability
5 May, 2024
Arbitrary File Upload vulnerability
28 August, 2023