Cross Site Scripting Vulnerability in Trippo Responsive Filemanager by Trippo
CVE-2024-50807
Currently unrated
What is CVE-2024-50807?
Trippo Responsive Filemanager version 9.14.0 is susceptible to a Cross Site Scripting (XSS) vulnerability that can be exploited through file uploads containing malicious SVG or PDF files. This flaw allows attackers to execute arbitrary script code in the context of the user's browser, potentially leading to session hijacking, defacement, or other security breaches. Users are advised to implement proper input validation and sanitization measures on file uploads to mitigate this risk.
