GHSA-737x-8xqc-h3ghHighCVSS 8.8

The audit file upload handler does not sanitize filenames, allowing shell metacharacters to flow...

Published
July 21, 2026
Last Modified
July 21, 2026

🔗 CVE IDs covered (1)

📋 Description

The audit file upload handler does not sanitize filenames, allowing shell metacharacters to flow into system command execution. This input validation failure enables command injection when chained with a related vulnerability.

🔗 References (3)