An arbitrary file upload vulnerability in the file upload component of ButterCMS v1.2.8 allows attackers to execute arbitrary code via a crafted SVG file.Referenceshttp://buttercms.comhttps://github.com/ButterCMS/buttercms-jshttps://www.youtube.com/watch?v=Tw8OhtVd-mEhttps://share.getcloudapp.com/nOuR70WB