Vulnerabilities > Filebrowser Project

DATE CVE VULNERABILITY TITLE RISK
2021-08-31 CVE-2021-37794 Cross-site Scripting vulnerability in Filebrowser Project Filebrowser
A stored cross-site scripting (XSS) vulnerability exists in FileBrowser < v2.16.0 that allows an authenticated user authorized to upload a malicious .svg file which acts as a stored XSS payload.
network
low complexity
filebrowser-project CWE-79
5.4