Vulnerabilities
Vulnerable Software
Hayageek:  Security Vulnerabilities
A cross-site scripting (XSS) vulnerability in the fileNameStr parameter of jQuery-Upload-File v4.0.11 allows attackers to execute arbitrary web scripts or HTML via a crafted file with a Javascript payload in the file name.
CVSS Score
6.1
EPSS Score
0.007
Published
2022-02-25
Arbitrary file upload in jQuery Upload File <= 4.0.2
CVSS Score
9.8
EPSS Score
0.286
Published
2018-11-19


Contact Us

Shodan ® - All rights reserved