An arbitrary file overwrite vulnerability in Zora: Post,...
Critical severity
Unreviewed
Published
Mar 31, 2026
to the GitHub Advisory Database
•
Updated Apr 2, 2026
Description
Published by the National Vulnerability Database
Mar 31, 2026
Published to the GitHub Advisory Database
Mar 31, 2026
Last updated
Apr 2, 2026
An arbitrary file overwrite vulnerability in Zora: Post, Trade, Earn Crypto v2.60.0 allows attackers to overwrite critical internal files via the file import process, leading to arbitrary code execution or information exposure.
References