### [CVE-2019-15603](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-15603) ![](https://img.shields.io/static/v1?label=Product&message=seeftl&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=Cross-site%20Scripting%20(XSS)%20-%20Stored%20(CWE-79)&color=brighgreen) ### Description The seefl package v0.1.1 is vulnerable to a stored Cross-Site Scripting (XSS) vulnerability via a malicious filename rendered in a directory listing. ### POC #### Reference - https://hackerone.com/reports/665302 #### Github No PoCs found on GitHub currently.