cve/2021/CVE-2021-25277.md
2024-05-25 21:48:12 +02:00

604 B

CVE-2021-25277

Description

FTAPI 4.0 - 4.10 allows XSS via a crafted filename to the alternative text hover box in the file submission component.

POC

Reference

Github