Michele Giorgi Formality <= 1.5.9 contains a file inclusion vulnerability caused by improper control of filename in include/require statements, letting attackers include local files, exploit requires crafted input.
Log in to view the POC file snapshot cached by Shenlong Bot
Log in to view