CVE List

CVE-2020-5811

Moderate 6.5

An authenticated path traversal vulnerability exists during package installation in Umbraco CMS <= 8.9.1 or current, which could result in arbitrary files being written outside of the site home and expected paths when installing an Umbraco package.

Published December 30, 2020.

Affected software

Get alerts for Umbraco Umbraco CMS

Reference links