CVE-2023-50639: Iscute Cute HTTP File Server

Medium severity, CVSS 5.4. EPSS: 0.4% chance of exploitation in the next 30 days.

Cross Site Scripting (XSS) vulnerability in CuteHttpFileServer v.1.0 and v.2.0 allows attackers to obtain sensitive information via the file upload function in the home page.

Affected products

  • Iscute Cute HTTP File Server: version 1.0 only; version 2.0 only

Published 2023-12-20. Last modified 2026-06-17.