Executive brief
REDAXO allows Arbitrary File Upload in the mediapool page
Affected products
- Packagist redaxo/source
Junglewise Threat Intelligence
CVE-2025-27411 · Severity: low · CVSS 3.1 · Published 2025-03-05
Technologies: redaxo/source (Packagist). Vendors: Packagist.
REDAXO allows Arbitrary File Upload in the mediapool page