Vulnerability Database

296,489

Total vulnerabilities in the database

CVE-2024-8581

A vulnerability in the upload_app function of parisneo/lollms-webui V12 (Strawberry) allows an attacker to delete any file or directory on the system. The function does not implement user input filtering with the filename value, causing a Path Traversal error.

No technical information available.

CWEs: