CVE-2024-31820: Ecommerce-Codeigniter-Bootstrap Project Ecommerce-Codeigniter-Bootstrap
Critical severity, CVSS 9.8. EPSS: 1.9% chance of exploitation in the next 30 days.
An issue in Ecommerce-CodeIgniter-Bootstrap commit v. d22b54e8915f167a135046ceb857caaf8479c4da allows a remote attacker to execute arbitrary code via the getLangFolderForEdit method of the Languages.php component.
Affected products
- Ecommerce-Codeigniter-Bootstrap Project Ecommerce-Codeigniter-Bootstrap: before 2024-01-02 (fixed in 2024-01-02)
Published 2024-04-29. Last modified 2026-06-17.