CyberSec.Space Logo
Back to CVE Browser

CVE-2021-47746

HIGH
7.5
CVSS Severity Score
EPSS Score0.0110%
EPSS Percentile43.77th
PublishedJan 21, 2026
Last ModifiedApr 15, 2026

Vulnerability Description

NodeBB Plugin Emoji 3.2.1 contains an arbitrary file write vulnerability that allows administrative users to write files to arbitrary system locations through the emoji upload API. Attackers with admin access can craft file upload requests with directory traversal to overwrite system files by manipulating the file path parameter.

Affected Platforms (CPE)

No CPE configurations currently published for this record.

References & Advisories

Related Vulnerabilities