Admin privilege escalation and arbitrary code execution via malicious *.etherpad imports
### Impact An attacker can craft an `*.etherpad` file that, when imported, might allow the attacker to gain admin privileges for the Etherpad instance. This, in turn, can be used to install a ma...
github.com