Security Advisory
CVE-2023-35840
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
_joinPath in elFinderVolumeLocalFileSystem.class.php in elFinder before 2.1.62 allows path traversal in the PHP LocalVolumeDriver connector.