Loading HuntDB...

GHSA-g9fr-v3jx-9jph

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

HCL Compass is vulnerable to lack of file upload security.  An attacker could upload files containing active code that can be executed by the server or by a user's web browser.

Related CVEs

Key Information

GHSA ID
GHSA-g9fr-v3jx-9jph
Published
October 19, 2023 12:30 AM
Last Modified
April 4, 2024 8:46 AM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 11, 2025 6:35 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.