MEDIUM5.2Packagist
GHSA-94vp-rmqv-5875· CVE-2020-15247Twig Sandbox Escape by authenticated users with access to editing CMS templates when safemode is enabled.
Modified: 9/10/2026
package
pkg:packagist/october/cms
Twig Sandbox Escape by authenticated users with access to editing CMS templates when safemode is enabled.
Modified: 9/10/2026
Upload whitelisted files to any directory in OctoberCMS
Modified: 7/8/2026
Bypass of fix for CVE-2020-26231, Twig sandbox escape
Modified: 7/8/2026
Arbitrary File Deletion vulnerability in OctoberCMS
Modified: 7/8/2026
October CMS PHP Code Execution
Modified: 2/16/2024
Local File read vulnerability in OctoberCMS
Modified: 9/10/2026
Bypass of fix for CVE-2020-15247, Twig sandbox escape
Modified: 9/10/2026
Local File Inclusion by unauthenticated users
Modified: 7/8/2026