CRITICAL
A zip slip vulnerability in the /DesignTools/SkinList.aspx endpoint of MojoPortal CMS v2.9.0.1 allows attackers to execute arbitrary commands via uploading a crafted zip file
Published Feb 13, 2026
10.0
CRITICALCVSS 3.1
EPSS 0.67%
Description
Affected products
Remediation
References (4)
Change history (0)
No recorded changes yet.