Gawain Lynch

1 exploit Active since Nov 2017
CVE-2017-16754 WRITEUP MEDIUM WRITEUP
Bolt < 3.3.6 - Unauthenticated Access to Profiler Routes
Bolt before 3.3.6 does not properly restrict access to _profiler routes, related to EventListener/ProfilerListener.php and Provider/EventListenerServiceProvider.php.
CVSS 5.3