Description
An arbitrary file upload vulnerability in the file upload module of Strapi v4.1.5 allows attackers to execute arbitrary code via a crafted file.
Remediation
References
https://github.com/strapi/strapi
https://www.youtube.com/watch?v=LEeabouqRrg
Related Vulnerabilities
CVE-2023-43123 Vulnerability in maven package org.apache.storm:storm-pmml-examples
CVE-2015-3250 Vulnerability in maven package org.apache.directory.api:apache-ldap-api
CVE-2022-45392 Vulnerability in maven package io.jenkins.plugins:cavisson-ns-nd-integration
CVE-2018-1284 Vulnerability in maven package org.apache.hive:hive-exec
CVE-2019-10174 Vulnerability in maven package org.infinispan:infinispan-commons