Vulnerabilities in Bolt
6 resultsCVE-2025-34086HIGHBolt CMS Authenticated Remote Code Execution via Profile Injection and File RenameEPSS 2.1%CVE-2020-4041HIGHThe filename of uploaded files vulnerable to stored XSS in Bolt CMSEPSS 2.0%CVE-2020-4040HIGHCSRF issue on preview pages in Bolt CMSEPSS 1.8%CVE-2024-7300MEDIUMBolt CMS Showcase Creation showcases cross site scriptingEPSS 0.4%CVE-2024-7299MEDIUMBolt CMS Entry Preview page cross site scriptingEPSS 0.4%CVE-2026-11511MEDIUMBolt CMS HTML Attribute TextType.php HTML injectionEPSS 0.2%