Startutorial's vulnerability footprint is narrowly scoped to a PHP backend component for resumable file uploads, representing a specialized middleware function rather than a broadly deployed platform. The observed weakness class centers on unrestricted file-upload handling, a characteristic risk in components designed to accept and process user-supplied files without strict type validation.
The number and severity of CVEs published that impact products developed by Startutorial over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-52086HIGH resumable.php (aka PHP backend for resumable.js) 0.1.4 before 3c6dbf5 allows arbitrary file upload anywhere in the filesystem via ../ in multipart/form-data content to upload.php. | Dec 26, 2023 | 8.1 | 22 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Startutorial.
Media articles that mention a CVE ID that affects a product developed by Startutorial — matched by CVE ID, not by vendor name.