Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-73r9-c9jc-f73v

Опубликовано: 15 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

File upload vulnerability in Omnispace Agora Project before 25.10 allowing attackers to execute code through the MSL engine of the Imagick library via crafted PDF file to the file upload and thumbnail functions.

File upload vulnerability in Omnispace Agora Project before 25.10 allowing attackers to execute code through the MSL engine of the Imagick library via crafted PDF file to the file upload and thumbnail functions.

EPSS

Процентиль: 26%
0.00092
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-434

Связанные уязвимости

CVSS3: 9.8
nvd
24 дня назад

File upload vulnerability in Omnispace Agora Project before 25.10 allowing attackers to execute code through the MSL engine of the Imagick library via crafted PDF file to the file upload and thumbnail functions.

EPSS

Процентиль: 26%
0.00092
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-434