Mindoc · Mindoc · CVE-2022-29637
**Name of the Vulnerable Software and Affected Versions**
Mindoc version 2.1-beta.5
**Description**
The issue allows attackers to execute arbitrary commands via a crafted Zip file, exploiting an arbitrary file upload vulnerability.
**Recommendations**
For Mindoc version 2.1-beta.5, consider restricting the upload of Zip files or implementing validation checks on uploaded files to prevent the execution of arbitrary commands until a patch is available.