Cross-site Scripting (XSS) - Stored in stevearc/pypicloud

Valid
Reported on May 19th 2021

✍️ Description

i didn't know there was something like this

🕵️‍♂️ Proof of Concept

details

https://github.com/stevearc/pypicloud/issues/280

💥 Impact

stored xss on admin panel

many users still have older versions