Security Advisory
CVE-2021-23407
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
This affects the package elFinder.Net.Core from 0 and before 1.2.4. The user-controlled file name is not properly sanitized before it is used to create a file system path.