← Back to CVE search

CVE-2026-7508

Bootstrap CMS

Description

A vulnerability was found in Bootstrap CMS 0.9.0-alpha. Affected is an unknown function of the file resources/views/pages/show.blade.php of the component Page Creation Handler. Performing a manipulation of the argument body results in code injection. Remote exploitation of the attack is possible. The exploit has been made public and could be used. The code repository of the project has not been active for many years. This vulnerability only affects products that are no longer supported by the maintainer.

CVSS 6.3EPSS 0.233%Risk 0.64
View source
Published
2026-04-30 23:16:21
Affected versions
==0.9.0-alpha
Type
Core software
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L