CVE-2026-108791 | westboy CicadasCMS up to 2431154dac8d0735e04f1fd2a3c3556668fc8dab Template Management input TemplateController.input filePath path traversal

SecurityVulns

A vulnerability classified as problematic has been found in westboy CicadasCMS up to 2431154dac8d0735e04f1fd2a3c3556668fc8dab. Affected is the function TemplateController.input of the file /system/cms/template/input of the component Template Management. This manipulation of the argument filePath causes path traversal.

The identification of this vulnerability is CVE-2026-108791. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.

The vendor was contacted early about this disclosure but did not respond in any way.VulDB Recent EntriesRead More