Vulnerabilities > Dungeon Crawl Stone Soup Project

DATE CVE VULNERABILITY TITLE RISK
2020-04-12 CVE-2020-11722 Unrestricted Upload of File with Dangerous Type vulnerability in Dungeon Crawl Stone Soup Project Dungeon Crawl Stone Soup
Dungeon Crawl Stone Soup (aka DCSS or crawl) before 0.25 allows remote attackers to execute arbitrary code via Lua bytecode embedded in an uploaded .crawlrc file.
network
low complexity
dungeon-crawl-stone-soup-project CWE-434
critical
9.8