Vulnerability Database
Blog
FAQ
Docs
CVE-2022-1811
See a problem?
Please try reporting it
to the source
first.
Source
https://nvd.nist.gov/vuln/detail/CVE-2022-1811
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-1811.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-1811
Aliases
BIT-publify-2022-1811
GHSA-3hwx-c6cp-q972
Published
2022-05-23T16:16:06Z
Modified
2024-10-12T08:53:08.231778Z
Severity
5.4 (Medium)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
CVSS Calculator
Summary
[none]
Details
Unrestricted Upload of File with Dangerous Type in GitHub repository publify/publify prior to 9.2.9.
References
https://huntr.dev/bounties/4d97f665-c9f1-4c38-b774-692255a7c44c
https://github.com/publify/publify/commit/0fb6b027fbaf17f6a6551f2148482a03eac12927
Affected packages
Git
/
github.com/publify/publify
Affected ranges
Type
GIT
Repo
https://github.com/publify/publify
Events
Introduced
0
Unknown introduced commit / All previous commits are affected
Fixed
0fb6b027fbaf17f6a6551f2148482a03eac12927
Affected versions
Other
5_3_0
release_5_1_98
release_5_2_0
release_5_2_98
release_5_4_0
release_5_4_1
release_5_4_2
release_5_4_3
release_5_4_4
release_5_5
release_6_0_0
release_6_0_1
release_6_0_2
release_6_0_3
release_6_0_4
release_6_0_6
release_6_0_7
release_6_0_8
release_6_0_9
release_6_1_0
release_6_1_1
release_6_1_2
release_6_1_3
release_6_1_4
release_7_0_0-beta1
6.*
6.9.0
7.*
7.0.0
7.1.0
release-1.*
release-1.6.7
release-5.*
release-5.0.3
release-5.0.3-no-rly
release-5.0.3.98
release-5.1
release-5.1.1
release-5.1.2
release-5.1.3
v8.*
v8.0
v8.0.1
v8.0.2
v8.1.0
v8.1.1
v8.2.0
v8.3.0
v8.3.1
v8.3.2
v8.3.3
v9.*
v9.0.0
v9.0.1
v9.1.0
v9.2.0
v9.2.1
v9.2.2
v9.2.3
v9.2.4
v9.2.5
v9.2.6
v9.2.7
v9.2.8
CVE-2022-1811 - OSV