CVE

CVE-2020-7685

CVE-2020-7685

This affects all versions of package UmbracoForms.
When using the default configuration for upload forms, it is possible to upload arbitrary file types.

The package offers a way for users to mitigate the issue. The users of this package can create a custom workflow and frontend validation that blocks certain file types, depending on their security needs and policies.

Source: CVE-2020-7685

Exit mobile version