GHSA-6m8g-7xrr-8q5fCritical

Webmin before 2.640 does not safely construct a filename for saving of an attachment within the...

Published
May 27, 2026
Last Modified
May 27, 2026

🔗 CVE IDs covered (1)

📋 Description

Webmin before 2.640 does not safely construct a filename for saving of an attachment within the mailboxes component. This occurs in mailboxes/detachall.cgi.

🔗 References (4)