CVE Published: Invalid date format |
CVE Updated: 14/08/2024 |
CVE Year: 2024 Source: mitre |
Vendor: n/a |
Product: n/a Status : PUBLISHED
CVE-2024-36858 Description
An arbitrary file upload vulnerability in the /v1/app/writeFileSync interface of Jan v0.4.12 allows attackers to execute arbitrary code via uploading a crafted file.