CyberRota Analysis
AI analysis pending.
CVE
CVE-2018-7302
Severity
MEDIUM
CVSS
5.4
EPSS
0.55%
Original NVD Description
Tiki 17.1 allows upload of a .PNG file that actually has SVG content, leading to XSS.
Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-02-21 · Last synced 2026-08-04
AI analysis pending.
Tiki 17.1 allows upload of a .PNG file that actually has SVG content, leading to XSS.