Total vulnerabilities in the database
Bolt before 3.3.6 does not properly restrict access to _profiler routes, related to EventListener/ProfilerListener.php and Provider/EventListenerServiceProvider.php.
CVSS v3:
CVSS v2:
CWEs: