Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown

CVE-2022-29001

Disclosure Date: May 03, 2022 (last updated October 07, 2023)
In SpringBootMovie <=1.2, the uploaded file suffix parameter is not filtered, resulting in arbitrary file upload vulnerability
Attacker Value
Unknown

CVE-2022-28588

Disclosure Date: May 03, 2022 (last updated October 07, 2023)
In SpringBootMovie <=1.2 when adding movie names, malicious code can be stored because there are no filtering parameters, resulting in stored XSS.