GHSA-8fj7-f6jq-9qw4
GitHub Security Advisory
⚠ Unreviewed
MODERATE
Has CVE
Advisory Details
HongCMS 3.0.0 allows arbitrary file read and write operations via a ../ in the filename parameter to the admin/index.php/language/edit URI.
Related CVEs
Key Information
5.0
/10
Dataset
Last updated: July 1, 2025 6:26 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.