CVE-2024-34191: Htmly

Medium severity, CVSS 6.5. EPSS: 0.5% chance of exploitation in the next 30 days.

htmly v2.9.6 was discovered to contain an arbitrary file deletion vulnerability via the delete_post() function at admin.php. This vulnerability allows attackers to delete arbitrary files via a crafted request.

Affected products

  • Htmly Htmly: version 2.9.6 only

Published 2024-05-14. Last modified 2026-06-17.