Vulnerabilities > Mblog Project > Mblog > High

DATE CVE VULNERABILITY TITLE RISK
2023-05-08 CVE-2021-27280 Unrestricted Upload of File with Dangerous Type vulnerability in Mblog Project Mblog 3.5.0
OS Command injection vulnerability in mblog 3.5.0 allows attackers to execute arbitrary code via crafted theme when it gets selected.
local
low complexity
mblog-project CWE-434
7.8