CVE-2020-28925
30.12.2020, 19:15
Bolt before 3.7.2 does not restrict filter options in a Request in the Twig context, and is therefore inconsistent with the "How to Harden Your PHP for Better Security" guidance.Enginsight
Vendor | Product | Version |
---|---|---|
boltcms | bolt | 𝑥 < 3.7.2 |
𝑥
= Vulnerable software versions