Critical severity9.8NVD Advisory· Published Apr 15, 2021· Updated Jun 17, 2026
CVE-2021-27112
CVE-2021-27112
Description
LightCMS v1.3.5 contains a remote code execution vulnerability in /app/Http/Controllers/Admin/NEditorController.php during the downloading of external images.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:lightcms_project:lightcms:1.3.5:*:*:*:*:*:*:*
- LightCMS/LightCMSdescription
Patches
Vulnerability mechanics
References
1- github.com/eddy8/LightCMS/issues/19nvdExploitIssue TrackingThird Party Advisory
News mentions
0No linked articles in our index yet.