5tarlight / Jasao

Space for you, space for us
https://jasao.kro.kr
MIT License
2 stars 0 forks source link

[Bug] Vulnerability allows to upload multiple profile image #61

Open 5tarlight opened 1 year ago

5tarlight commented 1 year ago

When upload profile image multiple time with different extension, older one not deleted and multiple images with same name and different extension created. Not affects service.

image