Vulnerabilities > Kakadusoftware > Kakadu SDK > 7.9.1
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-12-20 | CVE-2023-6562 | Unrestricted Upload of File with Dangerous Type vulnerability in Kakadusoftware Kakadu SDK JPX Fragment List (flst) box vulnerability in Kakadu 7.9 allows an attacker to exfiltrate local and remote files reachable by a server if the server allows the attacker to upload a specially-crafted the image that is displayed back to the attacker. | 7.5 |