Vulnerabilities > Silverstripe > Silverstripe > 3.7.4

DATE CVE VULNERABILITY TITLE RISK
2019-09-25 CVE-2019-12245 Incorrect Permission Assignment for Critical Resource vulnerability in Silverstripe
SilverStripe through 4.3.3 has incorrect access control for protected files uploaded via Upload::loadIntoFile().
network
low complexity
silverstripe CWE-732
5.0