← Back to CVE List
CVE-2021-23439
This affects the package file-upload-with-preview before 4.2.0. A file containing malicious JavaScript code in the name can be uploaded (a user needs to be tricked into uploading such a file).
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt