The back-end does not sufficiently verify the user-controlled filename parameter which makes it possible for an attacker to perform a path…
icscert·CWE-35·Published 2024-11-22