CVE-2020-18879: Bludit
Critical severity, CVSS 9.8. EPSS: 3.1% chance of exploitation in the next 30 days.
Unrestricted File Upload in Bludit v3.8.1 allows remote attackers to execute arbitrary code by uploading malicious files via the component 'bl-kereln/ajax/upload-logo.php'.
Affected products
- Bludit Bludit: version 3.8.1 only
Published 2021-08-20. Last modified 2026-06-17.