CVE-2026-108790 | westboy CicadasCMS up to 2431154dac8d0735e04f1fd2a3c3556668fc8dab Backend Template Editor save TemplateController.save path traversal
A vulnerability described as problematic has been identified in westboy CicadasCMS up to 2431154dac8d0735e04f1fd2a3c3556668fc8dab. This impacts the function TemplateController.save of the file /system/cms/template/save of the component Backend Template Editor. The manipulation results in path traversal.
This vulnerability was named CVE-2026-108790. The attack may be performed from remote. In addition, an exploit is available.
The vendor was contacted early about this disclosure but did not respond in any way.VulDB Recent EntriesRead More