GHSA-9p62-x3c5-hr5p
HIGHCVE-2022-46178MeterSphere allow users to upload file, but not check the file name, may lead to upload file to any path if the file name in upload request is falsified.
- Affected
- < 2.5.1
- Fixed in
- 2.5.1
- Weakness
- CWE-22
- Published
- 2022-12-30
- Source
- github