Lucene search

K

Save-server Security Vulnerabilities

cve
cve

CVE-2020-15135

save-server (npm package) before version 1.05 is affected by a CSRF vulnerability, as there is no CSRF mitigation (Tokens etc.). The fix introduced in version version 1.05 unintentionally breaks uploading so version v1.0.7 is the fixed version. This is patched by implementing Double submit. The CSR...

7.6CVSS

7.4AI Score

0.004EPSS

2020-08-04 09:15 PM
34