CVE-2023-27812: Bloofox Bloofoxcms

Critical severity, CVSS 9.1. EPSS: 1.2% chance of exploitation in the next 30 days.

bloofox v0.5.2 was discovered to contain an arbitrary file deletion vulnerability via the delete_file() function.

Affected products

  • Bloofox Bloofoxcms: version 0.5.2 only

Published 2023-04-13. Last modified 2026-07-09.