Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

00Mpal00Mpa

#41342of 53,632
6.5Total CVSS
Vulnerabilities · 1
PT-2025-23653
6.5
2025-06-03
Umbraco · Umbraco · CVE-2025-48953
**Name of the Vulnerable Software and Affected Versions** Umbraco versions 14.0.0 through 15.4.1 **Description** The issue allows uploading a file that does not adhere to the configured allowable file extensions via a manipulated API request. The problem is resolved in versions 15.4.2 and 16.0.0. **Recommendations** For versions 14.0.0 through 15.4.1, update to version 15.4.2 or 16.0.0 to resolve the issue. As a temporary workaround, consider restricting API requests to prevent unauthorized file uploads until a patch is applied.