CVE-2026-71291 | Bolt core up to 6.1 Twig Rendering src/Entity/Field.php getTwigValue os command injection

SecurityVulns

A vulnerability was found in Bolt core up to 6.1. It has been classified as critical. Affected is the function getTwigValue of the file src/Entity/Field.php of the component Twig Rendering. This manipulation causes os command injection.

The identification of this vulnerability is CVE-2026-71291. It is possible to initiate the attack remotely. There is no exploit available.VulDB Recent EntriesRead More