CVE-2025-1983 Information
Apr 17, 2025
cve
Description
A cross-site scripting (XSS) vulnerability in Ready_’s File Explorer upload functionality allows injection of arbitrary JavaScript code in filename. Injected content is stored on server and is executed every time a user interacts with the uploaded file.
Reference
https://cert.pl/en/posts/2025/04/CVE-2025-1980 https://cert.pl/posts/2025/04/CVE-2025-1980 https://ready-os.com/pl/
Share on: