CVE-2019-19576EPSS p97.8%
CVE-2019-19576CVE-2019-19576
verot_project / verot
Description
class.upload.php in verot.net class.upload before 1.0.3 and 2.x before 2.0.4, as used in the K2 extension for Joomla! and other products, omits .phar from the set of dangerous file extensions.
Scoring
| CVSS | 9.8 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 26.18% probability of exploitation · percentile 97.8% · 2026-08-11T12:00:17Z |
| Last modified | 2026-06-26 |