CVE-2025-55383
Moss before v0.15 has a file upload vulnerability. The “upload” function configuration allows attackers to upload files of any extension to any location on the target server.
More information : https://github.com/deep-project/moss/issues/16