Cross Site Scripting vulnerability in webkil Bagisto v.1.5.0 and before allows an attacker to execute arbitrary code via a crafted SVG file uplad.
| Software | From | Fixed in |
|---|---|---|
| webkul / bagisto | - | 1.5.0.x |
bagisto / bagisto
|
- | 1.3.2 |