-
Notifications
You must be signed in to change notification settings - Fork 29
Issues: dromara/ujcms
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Author
Label
Projects
Milestones
Assignee
Sort
Issues list
Stored XSS via file SVG uploads in UJCMS 9.6.3 allows for JWT theft
#11
opened Dec 12, 2024 by
cydtseng
Ujcms v8.0.2 has a vulnerability that upload a pdf file with hidden Cross Site Scripting (XSS).
#8
opened Dec 18, 2023 by
Phantom4me
Ujcms v8.0.2 has a vulnerability that attacker could spoofing servers with IP addresses.
#7
opened Dec 17, 2023 by
Phantom4me
ProTip!
Exclude everything labeled
bug
with -label:bug.