✅ 檢查你的版本
所有已知漏洞
HIGH8.8CVE-2019-9185Bolt Unrestricted Upload of File with Dangerous Type from 0, < 3.6.5
>= 3.6.6, < 3.6.7
from 0, < 3.7.1
HIGH7.4CVE-2020-4041The filename of uploaded files vulnerable to stored XSS from 0, < 3.7.1
MEDIUM6.1CVE-2019-15484Bolt Cross-site Scripting (XSS) via an image's alt or title field from 0, < 3.6.10
MEDIUM6.1CVE-2019-9553Bolt Cross-site Scripting via the slug, teaser or title parameters MEDIUM6.1CVE-2019-15483Bolt Cross-site Scripting (XSS) via a title that is mishandled in the system log from 0, < 3.6.10
MEDIUM6.1CVE-2018-19933Bolt Cross-site Scripting (XSS) via text input click preview button from 0, < 3.6.2
from 0, < 3.6.10
from 0, <= 3.2.14
from 0, < 3.3.6
from 0, < 3.7.2
from 0, <= 3.7.1
—CVE-2025-34086Bolt CMS vulnerable to authenticated remote code execution from 0, <= 3.7.0