Security: octobercms/october
Security Advisories
View known security vulnerabilities and report new vulnerabilities privately to maintainers.
-
Arbitrary Upload of Whitelisted File Types by authenticated backend user with cms.manage_assets permissionGHSA-9722-rr68-rfpg published
Jun 2, 2020 by LukeTowersLow -
Arbitrary File Deletion by authenticated backend user with cms.manage_assets permissionGHSA-jv6v-fvvx-4932 published
Jun 2, 2020 by LukeTowersModerate -
Local File Inclusion by authenticated backend user with cms.manage_assets permissionGHSA-r23f-c2j5-rx2f published
Jun 2, 2020 by LukeTowersModerate