php/elFinder.class.php in elFinder before 2.1.45 leaks information if PHP's curl extension is enabled and safe_mode or open_basedir is not set.
{
"github_reviewed_at": "2023-07-07T19:09:25Z",
"severity": "MODERATE",
"github_reviewed": true,
"cwe_ids": [
"CWE-200"
],
"nvd_published_at": "2019-01-10T08:29:00Z"
}