CVE-2018-16630 by Fred · 28/12/2018 Kirby v2.5.12 allows XSS by using the "site files" Add option to upload an SVG file. Date published : 2018-12-28 https://github.com/security-breachlock/CVE-2018-16630/blob/master/Kirby_Insecure%20file%20validation.pdf Share this: Click to share on X (Opens in new window) X Click to share on Bluesky (Opens in new window) Bluesky Click to share on Facebook (Opens in new window) Facebook Click to share on LinkedIn (Opens in new window) LinkedIn Click to share on Threads (Opens in new window) Threads Click to share on Mastodon (Opens in new window) Mastodon Similar