VendorsHayageekjquery_upload_file4.0.11
Vulnerabilities

Hayageek hyaGeek jQuery Upload File 4.0.11

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2021-37504
A cross-site scripting (XSS) vulnerability in the fileNameStr parameter of jQuery-Upload-File v4.0.11 allows attackers to execute arbitrary web scripts or HTML via a crafted file with a Javascript payload in the file name.
Published 2022-02-25 · Modified
6.1EPSS 0.009