CVE-2023-36236

Published
View on NVD ↗
CVSS v3
4.8
MEDIUM
CVSS v2
N/A
Affected
2
PROJECTS

Description

Cross Site Scripting vulnerability in webkil Bagisto v.1.5.0 and before allows an attacker to execute arbitrary code via a crafted SVG file uplad.

Free and open source laravel eCommerce platform
GitHubGitHub
27.3K