Vulnerabilities > Startutorial

DATE CVE VULNERABILITY TITLE RISK
2023-12-26 CVE-2023-52086 Unrestricted Upload of File with Dangerous Type vulnerability in Startutorial PHP Backend for Resumable.Js 0.1.4
resumable.php (aka PHP backend for resumable.js) 0.1.4 before 3c6dbf5 allows arbitrary file upload anywhere in the filesystem via ../ in multipart/form-data content to upload.php.
network
high complexity
startutorial CWE-434
8.1