CVE-2020-5256
Published Mar 9, 2020BookStack before version 0.25.5 has a vulnerability where a user could upload PHP files through image upload functions, which would allow them to execute code on the host system r…
CWE archive
152 CVEs tagged with CWE-95 — 70 Critical, 59 High, 20 Medium, 3 Low, 0 Unrated.
BookStack before version 0.25.5 has a vulnerability where a user could upload PHP files through image upload functions, which would allow them to execute code on the host system r…
In Secure Headers (RubyGem secure_headers), a directive injection vulnerability is present in versions before 3.8.0, 5.1.0, and 6.2.0. If user-supplied input was passed into appen…