CVE-2021-3199 — ONLYOFFICE Docs : ONLYOFFICE Docs Server Path Traversal Vulnerability
ONLYOFFICE Docs contains a path traversal vulnerability that can occur when JWT is used, via a /.. sequence in an image upload parameter and could allow for remote code execution. Action : Apply mitigations in accordanc…