CVE-2022-4111
on github
Published
Severity
CVSS v3:
6.5 MEDIUM
CVSS v2:
N/A
Description
Unrestricted file size limit can lead to DoS in tooljet/tooljet <1.27 by allowing a logged in attacker to upload profile pictures over 2MB.
References
Configurations
CPE23 | Version Start | Version End | Exact Version |
---|---|---|---|
cpe:2.3:a:tooljet:tooljet:*:*:*:*:*:*:*:* | n/a | 1.27.0 | * |