CVE-2023-33498 Information

Description

alist <=3.16.3 is vulnerable to Incorrect Access Control. Low privilege accounts can upload any file.

Reference

https://github.com/YUyuanAN-com/loophole

Share on: