Bolt
Vendor:
First CVE: Sep 22, 2015 · Active for 10 years
19
Total CVEs
More Total CVEs than 93% of tracked products
2.4
Avg CVEs / Year
Higher CVE frequency than 74% of tracked products
6.5
Avg CVSS
Higher Avg CVSS than 28% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Bolt over time
Volume of CVEsAvg CVSS Base Score
First CVE
Sep 22, 2015
10 years ago
Most Recent CVE
Jul 3, 2025
386 days ago
CVE Severity & Scoring
Bolt19 CVEs
74%
21%
All CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network18 (94.7%)
Unknown1 (5.3%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low18 (94.7%)
High0 (0.0%)
Unknown1 (5.3%)
User Interaction
None6 (31.6%)
Unknown1 (5.3%)
Required12 (63.2%)
Privileges Required
Low6 (31.6%)
High0 (0.0%)
None12 (63.2%)
Unknown1 (5.3%)
Top CVEs
Signals from CVEs in this product scope (19 CVEs).
19 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2015-7309MEDIUM The theme editor in Bolt before 2.2.5 does not check the file extension when renaming files, which allows remote authenticated users to execute arbitrary code by renaming a crafted | Sep 22, 2015 | 6.5 | 61 | NO | YES |
CVE-2019-10874HIGH Cross Site Request Forgery (CSRF) in the bolt/upload File Upload feature in Bolt CMS 3.6.6 allows remote attackers to execute arbitrary code by uploading a JavaScript file to inclu | Apr 5, 2019 | 8.8 | 41 | NO | YES |
CVE-2025-34086HIGH Bolt CMS versions 3.7.0 and earlier contain a chain of vulnerabilities that together allow an authenticated user to achieve remote code execution. A user with valid credentials can | Jul 3, 2025 | 8.8 | 38 | NO | YES |
CVE-2019-9553MEDIUM Bolt 3.6.4 has XSS via the slug, teaser, or title parameter to editcontent/pages, a related issue to CVE-2017-11128 and CVE-2018-19933. | Dec 31, 2019 | 6.1 | 31 | NO | YES |
CVE-2022-31321CRITICAL The foldername parameter in Bolt 5.1.7 was discovered to have incorrect input validation, allowing attackers to perform directory enumeration or cause a Denial of Service (DoS) via | Aug 1, 2022 | 9.1 | 29 | NO | NO |
CVE-2021-27367HIGH Controller/Backend/FileEditController.php and Controller/Backend/FilemanagerController.php in Bolt before 4.1.13 allow Directory Traversal. | Feb 17, 2021 | 7.5 | 23 | NO | NO |
CVE-2019-9185HIGH Controller/Async/FilesystemManager.php in the filemanager in Bolt before 3.6.5 allows remote attackers to execute arbitrary PHP code by renaming a previously uploaded file to have | Mar 7, 2019 | 8.8 | 22 | NO | NO |
CVE-2024-7300MEDIUM A vulnerability classified as problematic has been found in Bolt CMS 3.7.1. Affected is an unknown function of the file /bolt/editcontent/showcases of the component Showcase Creati | Jul 31, 2024 | 5.4 | 21 | NO | NO |
CVE-2019-20058MEDIUM Bolt 3.7.0, if Symfony Web Profiler is used, allows XSS because unsanitized search?search= input is shown on the _profiler page. NOTE: this is disputed because profiling was never | Dec 29, 2019 | 6.1 | 20 | NO | NO |
CVE-2019-15485MEDIUM Bolt before 3.6.10 has XSS via createFolder or createFile in Controller/Async/FilesystemManager.php. | Aug 23, 2019 | 6.1 | 20 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (19 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
2 CVEs
10.5% of CVEs· 97th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
3 CVEs
15.8% of CVEs· 89th percentile
Social Chatter
Signals from CVEs in this product scope (19 CVEs).
Media Mentions
Signals from CVEs in this product scope (19 CVEs).
Top CNAs Publishing CVEs For Bolt
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 3.7.1 | 2 | 5.4 | 0.4% | 0 | 0 |
| 3.7.0 | 1 | 6.1 | 0.7% | 0 | 0 |
| 3.6.6 | 1 | 8.8 | 4.5% | 0 | 1 |
| 3.6.4 | 1 | 6.1 | 1.8% | 0 | 1 |
| 3.2.14 | 2 | 5.4 | 0.5% | 0 | 0 |