MEDIUM
An authenticated arbitrary file upload vulnerability in the /api/create-car-image component of bookcars v8.3 allows attackers to execute arbitrary code via uploading a crafted file
Published Jun 9, 2026
5.4
MEDIUMCVSS 3.1
EPSS 0.30%
Description
Affected products
Remediation
Metrics
References (1)
Change history (0)
No recorded changes yet.