{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/vendors/flextype/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:flextype:cms:*:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":8.3,"id":"CVE-2026-91751"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["Flextype CMS (\u003c= 1.0.0-alpha.3)"],"_cs_severities":["high"],"_cs_tags":["path-traversal","web-vulnerability","cve-2026-91751"],"_cs_type":"advisory","_cs_vendors":["Flextype"],"content_html":"\u003cp\u003eFlextype CMS versions up to and including 1.0.0-alpha.3 contain a critical path traversal vulnerability (CVE-2026-91751) within the Entries REST API. The vulnerability stems from insufficient input validation of the 'id' and 'new_id' parameters when processing API requests. This flaw permits an attacker who possesses a valid API token to escape the intended project entries directory. By utilizing path traversal sequences, an attacker can navigate the filesystem to read sensitive configuration or application files, or create and overwrite files in arbitrary directories. Given the potential for arbitrary file creation and modification, successful exploitation could lead to full system compromise or remote code execution depending on the attacker's ability to inject payloads into executable paths or configuration files.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation of this vulnerability allows unauthorized access to the underlying filesystem of the server hosting Flextype CMS. This represents a significant risk to the integrity and confidentiality of the entire hosting environment, as it grants API token holders the ability to read sensitive data, corrupt application files, or potentially gain further control over the host via arbitrary file write operations.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cp\u003ePrioritized actions for detection and remediation teams:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eUpgrade Flextype CMS installations to a version beyond 1.0.0-alpha.3 immediately to address CVE-2026-91751.\u003c/li\u003e\n\u003cli\u003eAudit existing API tokens to ensure only necessary users maintain access and revoke any suspected compromised tokens.\u003c/li\u003e\n\u003cli\u003eMonitor web server access logs for anomalous requests containing path traversal patterns (e.g., ../) targeting the Entries REST API endpoints.\u003c/li\u003e\n\u003cli\u003eRestrict access to the Entries REST API at the network or web server configuration level for untrusted network segments.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-09-15T01:38:09Z","date_published":"2026-09-15T01:38:09Z","id":"https://feed.craftedsignal.io/briefs/2026-09-flextype-cms-traversal/","summary":"Flextype CMS versions through 1.0.0-alpha.3 are vulnerable to path traversal via the Entries REST API, allowing authenticated attackers to read, create, or overwrite arbitrary files on the filesystem.","title":"Path Traversal Vulnerability in Flextype CMS Entries REST API","url":"https://feed.craftedsignal.io/briefs/2026-09-flextype-cms-traversal/"}],"language":"en","title":"CraftedSignal Threat Feed - Flextype","version":"https://jsonfeed.org/version/1.1"}