CVE-2023-36236
Published
CVSS v3
4.8
MEDIUM
CVSS v2
N/A
Affected
2
PROJECTS
Description
Cross Site Scripting vulnerability in webkil Bagisto v.1.5.0 and before allows an attacker to execute arbitrary code via a crafted SVG file uplad.
Cross Site Scripting vulnerability in webkil Bagisto v.1.5.0 and before allows an attacker to execute arbitrary code via a crafted SVG file uplad.