GHSA-xf73-gxc6-65vvHigh

Interpretation of untrusted input in template engine in GBIF Integrated Publishing Toolkit...

Published
August 18, 2026
Last Modified
August 18, 2026

🔗 CVE IDs covered (1)

📋 Description

Interpretation of untrusted input in template engine in GBIF Integrated Publishing Toolkit versions before 3.3.4 allows remote authenticated attackers to access server-side files and state via template injection

🔗 References (5)