CVE-2018-9206: jQuery File Upload Project jQuery File Upload

Critical severity, CVSS 9.8. EPSS: 97.3% chance of exploitation in the next 30 days.

Unauthenticated arbitrary file upload vulnerability in Blueimp jQuery-File-Upload <= v9.22.0

Affected products

Published 2018-10-11. Last modified 2026-08-12.