Description Arbitrary file upload in jQuery Upload File <= 4.0.2 Remediation References http://www.vapidlabs.com/advisory.php?v=206 Related Vulnerabilities CVE-2019-11819 Vulnerability in maven package org.opencms:org.opencms.workplace.tools.accounts CVE-2016-10707 Vulnerability in maven package org.webjars:jquery CVE-2020-28496 Vulnerability in npm package three CVE-2020-26291 Vulnerability in maven package org.webjars.bower:urijs CVE-2020-28496 Vulnerability in npm package three Severity Critical Classification CWE-434 CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H Tags Exploit Third Party Advisory