Vulnerabilities (CVE)

Filtered by vendor Std42 Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-45919 1 Std42 1 Elfinder 2022-02-11 3.5 LOW 5.4 MEDIUM
Studio 42 elFinder through 2.1.31 allows XSS via an SVG document.
CVE-2019-5884 1 Std42 1 Elfinder 2021-09-09 4.3 MEDIUM 5.9 MEDIUM
php/elFinder.class.php in elFinder before 2.1.45 leaks information if PHP's curl extension is enabled and safe_mode or open_basedir is not set.