RSS   Vulnerabilities for 'Form.io'   RSS

2022-06-02
 
CVE-2020-28246

CWE-74
 

 
A Server-Side Template Injection (SSTI) was discovered in Form.io 2.0.0. This leads to Remote Code Execution during deletion of the default Email template URL.

 


Copyright 2024, cxsecurity.com

 

Back to Top