Lucene search

K
osvGoogleOSV:GHSA-4W62-CQ5R-5MMQ
HistoryMay 13, 2022 - 1:32 a.m.

express-cart unrestricted file upload vulnerability

2022-05-1301:32:21
Google
osv.dev
2

7.2 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

36.3%

Unrestricted file upload (RCE) in express-cart module before 1.1.7 allows a privileged user to gain access in the hosting machine.

CPENameOperatorVersion
express-cartlt1.1.7

7.2 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

36.3%

Related for OSV:GHSA-4W62-CQ5R-5MMQ