CVE-2020-5505
15Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 44%
exploitation probability
44%top 1% of all CVEs
observed exploitation
nono source reports it
Freelancy v1.0.0 allows remote command execution via the "file":"data:application/x-php;base64 substring (in conjunction with "type":"application/x-php"} to the /api/files/ URI.
Affected products
n/a · n/a