CVE-2022-39016

Publication date

2022-10-31 20:06:26

Family

TML

State

PUBLISHED

Description

Javascript injection in PDFtron in M-Files Hubshare before 3.3.10.9 allows authenticated attackers to perform an account takeover via a crafted PDF upload.