Critical
Low
Medium
CVE-2025-44593
Overview
Halo prior to 2.20.13 allows bypassing file type detection and uploading malicious files such as .exe and .html files. Specifically, .html files can trigger stored XSS vulnerabilities. This vulnerability is fixed in 2.20.13
Critical
Low
Medium
No items found.