Authenticated (Author+) Stored CrossSite Scripting via SVG File Upload vulnerability
21 November, 2024
Arbitrary Content Deletion vulnerability
11 July, 2024
Missing Authorization to Unauthenticated Arbitrary Attachment Deletion vulnerability
9 July, 2024
PHP Object Injection vulnerability
5 April, 2024