Services - Moderately Critical - Stored Cross Site Scripting via Unvalidated File Uploads
Project
Date
Severity
Moderately Critical
Affected versions
<7.x-3.30
The REST API file upload endpoints validate files by extension only, so an authenticated user can store a non-image file (such as HTML containing JavaScript) with an image extension and later reference it from an image field, leading to stored cross site scripting.