bookstack is vulnerable to Unrestricted Upload of File with Dangerous Type
The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.
Link | Tags |
---|---|
https://huntr.dev/bounties/fcb65f2d-257a-46f4-bac9-f6ded5649079 | exploit third party advisory patch |
https://github.com/bookstackapp/bookstack/commit/ae155d67454d6b9f6c93b2bb457aaa4b2eb1a9ed | third party advisory patch |