Security Advisory
CVE-2021-23427
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
This affects all versions of package elFinder.NetCore. The ExtractAsync function within the FileSystem is vulnerable to arbitrary extraction due to insufficient validation.