Total vulnerabilities in the database
Craft CMS before 2.6.2976 does not properly restrict viewing the contents of files in the craft/app/ folder.
CVSS v3:
CVSS v2:
No CWE or OWASP classifications available.