cve/2021/CVE-2021-25277.md
2025-09-29 21:09:30 +02:00

615 B

CVE-2021-25277

Description

FTAPI 4.0 - 4.10 allows XSS via a crafted filename to the alternative text hover box in the file submission component.

POC

Reference

Github