Description Arbitrary file upload in jQuery Upload File <= 4.0.2 Remediation References http://www.vapidlabs.com/advisory.php?v=206 Related Vulnerabilities CVE-2020-7708 Vulnerability in npm package @irrelon/path CVE-2017-18355 Vulnerability in npm package rendertron-middleware CVE-2019-16728 Vulnerability in maven package org.webjars.bower:dompurify CVE-2022-25927 Vulnerability in maven package org.webjars.npm:ua-parser-js CVE-2020-7605 Vulnerability in npm package gulp-tape Severity Critical Classification CWE-434 CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H Tags Exploit Third Party Advisory