๐Ÿ” CVE Alert

CVE-2026-87727

MEDIUM 6.5
CVSS Score
6.5
EPSS Score
0.0%
EPSS Percentile
0th

a-blog cms Ver. 3.2.33 and earlier contains a path traversal vulnerability, which allows an unauthenticated attacker to read or delete arbitrary files on the affected product.

Vendor appleple inc.
Product a-blog cms
Published Sep 11, 2026
Last Updated Sep 11, 2026
Stay Ahead of the Next One

Get instant alerts for appleple inc. a-blog cms

Be the first to know when new medium vulnerabilities affecting appleple inc. a-blog cms are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N

Affected Versions

appleple inc. / a-blog cms
0 โ‰ค 3.2.33

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
jvn.jp: https://jvn.jp/en/jp/JVN20829034/ developer.a-blogcms.jp: https://developer.a-blogcms.jp/blog/news/JVN-20829034.html