CVE-2024-27731 Information
Aug 17, 2024
cve
Description
Cross Site Scripting vulnerability in Friendica v.2023.12 allows a remote attacker to obtain sensitive information via the lack of file type filtering in the file attachment parameter.
Reference
https://leo.oliver.nz/posts/2024/05/friendica-cve-disclosures/ https://github.com/friendica/friendica/pull/13927
Share on: