CVE-2023-27812
Critical · CVSS 9.1bloofox — Arbitrary File Deletion (Path Traversal / CWE-22)
- CVSS
- 9.1
- nvd
- EPSS
- —
- KEV
- No
- Class
- other
- CWE-22
Description
bloofox v0.5.2 was discovered to contain an arbitrary file deletion vulnerability via the delete_file() function.
Search profile — drives PoC discovery
Symbols delete_file()
Keywords CVE-2023-27812bloofoxarbitrary file deletiondelete_filepath traversalbloofox v0.5.2PHPcodecms
Versions: 0.5.2
Ranked PoCs (1) — best first
Heuristic ranking — not yet expert-vetted. Scored on structure + provenance, not execution.
- ★ 0cyb3r-w0lf/nuclei-template-collection needs reviewtrickest
Recall-favoring discovery; ranking by the Stage-4 scorer (Adam's rubric). Scanner/aggregator repos are hidden.
References
Status: enriched · ingested 2026-07-05T06:00:39.000Z · profiled 2026-07-05T18:30:39.000Z