Package impact

php Packagist / bolt/bolt

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2017-11128 medium 5.4 5.4 9y ago Bolt stored Cross-site Scripting (XSS)
CVE-2017-11127 medium 5.4 5.4 9y ago Bolt CMS Stored XSS
CVE-2017-16754 medium 5.3 5.3 9y ago Bolt Improper Access Control
CVE-2025-34086 unknown 1.0 11mo ago Bolt CMS vulnerable to authenticated remote code execution
CVE-2019-9553 unknown 1.0 4y ago Bolt Cross-site Scripting via the slug, teaser or title parameters
CVE-2018-19933 unknown 1.0 4y ago Bolt Cross-site Scripting (XSS) via text input click preview button
CVE-2019-10874 unknown 1.0 4y ago Bolt Cross Site Request Forgery (CSRF)
CVE-2024-7300 unknown 2y ago Bolt CMS Cross-site Scripting vulnerability
CVE-2019-15484 unknown 4y ago Bolt Cross-site Scripting (XSS) via an image's alt or title field
CVE-2019-15483 unknown 4y ago Bolt Cross-site Scripting (XSS) via a title that is mishandled in the system log
CVE-2019-9185 unknown 4y ago Bolt Unrestricted Upload of File with Dangerous Type
CVE-2020-28925 unknown 5y ago OS Command injection in Bolt
CVE-2020-4040 unknown 6y ago CSRF issue on preview pages in Bolt CMS
CVE-2020-4041 unknown 6y ago The filename of uploaded files vulnerable to stored XSS
CVE-2019-15485 unknown 7y ago Cross-site Scripting in Bolt