Описание
Casdoor arbitrary file write vulnerability
Casdoor v1.97.3 was discovered to contain an arbitrary file write vulnerability via the fullFilePath parameter at /api/upload-resource.
Пакеты
Наименование
github.com/casdoor/casdoor
go
Затронутые версииВерсия исправления
< 1.103.1
1.103.1
Связанные уязвимости
CVSS3: 9.1
nvd
больше 3 лет назад
Casdoor v1.97.3 was discovered to contain an arbitrary file write vulnerability via the fullFilePath parameter at /api/upload-resource.