MMAKINGDOM/CVE-2025-63419

MMAKINGDOM/CVE-2025-63419

Releases0
CrushFTP before 11.3.7_60 is vulnerable to HTML Injection. The Web-Based Server has a feature where users can share files, the feature reflects the filename to an emailbody field with no sanitzations leading to HTML Injection.

Collections containing this project

Showing collections based on your access.

This project is not in any collections you can view.