The critical-severity flaw could allow unauthenticated attackers to upload and execute arbitrary scripts.

Read the full article at SecurityWeek →