CVE-2025-63830
CKFinder 1.4.3 is vulnerable to Cross Site Scripting (XSS) in the File Upload function. An attacker can upload a crafted SVG containing active content.
Vendor
Product
CWE
Yayın Tarihi
2025-11-14 18:15:51
Güncelleme
2025-11-19 13:20:11
Source Identifier
cve@mitre.org
KEV Date Added
-