Ajax30
Ajax30's vulnerability profile centers on its BraveCMS product, a web content management system where identified weaknesses cluster around file-upload handling, authorization logic, and access controls. The recurring pattern of unrestricted file uploads, user-controlled authorization keys, and missing authorization checks reflects common risks in application-level access management and file-handling design. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
Trends Over Time
The number and severity of CVEs published that impact products developed by Ajax30 over time
Products(1 total)
Top CVEs
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-35047CRITICAL Brave CMS is an open-source CMS. Prior to 2.0.6, an Unrestricted File Upload vulnerability in the CKEditor endpoint allows attackers to upload arbitrary files, including executable | Apr 6, 2026 | 9.8 | 31 | NO | NO |
CVE-2026-35182HIGH Brave CMS is an open-source CMS. Prior to 2.0.6, this vulnerability is a missing authorization check found in the update role endpoint at routes/web.php. The POST route for /rights | Apr 6, 2026 | 8.8 | 30 | NO | NO |
CVE-2026-35164HIGH Brave CMS is an open-source CMS. Prior to 2.0.6, an unrestricted file upload vulnerability exists in the CKEditor upload functionality. It is found in app/Http/Controllers/Dashboar | Apr 6, 2026 | 8.8 | 30 | NO | NO |
CVE-2026-35183MEDIUM Brave CMS is an open-source CMS. Prior to 2.0.6, an Insecure Direct Object Reference (IDOR) vulnerability exists in the article image deletion feature. It is located in app/Http/Co | Apr 6, 2026 | 5.4 | 21 | NO | NO |
CVE Severity & Scoring
Exploit Exposure
Signals from CVEs in this vendor scope (4 CVEs).
Social Chatter
An overview of all social media posts that mention a CVE ID that affects a product developed by Ajax30.
Media Mentions
Media articles that mention a CVE ID that affects a product developed by Ajax30 — matched by CVE ID, not by vendor name.