php-mod/curl allows Cross-site Scripting
Moderate severity
GitHub Reviewed
Published
Dec 26, 2022
to the GitHub Advisory Database
•
Updated Apr 3, 2023
Description
Published by the National Vulnerability Database
Dec 26, 2022
Published to the GitHub Advisory Database
Dec 26, 2022
Reviewed
Jan 9, 2023
Last updated
Apr 3, 2023
php-mod/curl (a wrapper of the PHP cURL extension) before 2.3.2 allows XSS via the
post_file_path_upload.php
key parameter and the POST data topost_multidimensional.php
.References