CVE-2026-100372
published 2026-09-25CVE-2026-100372: ClipBucket v5 before 5.5.3-#197 contains a path traversal vulnerability in the admin template editor that allows authenticated administrators to overwrite PHP…
PriorityP348high7.2CVSS 3.1
AVNACLPRHUINSUCHIHAH
EPSS
1.14%
65.5th percentile
ClipBucket v5 before 5.5.3-#197 contains a path traversal vulnerability in the admin template editor that allows authenticated administrators to overwrite PHP files by supplying directory traversal sequences in the folder parameter. Attackers with manage_template_access permission can traverse outside the layout directory to modify executable PHP files and achieve remote code execution as the web server user.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| macwarrior | clipbucket-v5 | < 5.5.3-#197 | 5.5.3-#197 |
CVSS provenance
nvdv3.17.2HIGHCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
nvdv4.08.6HIGHCVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
MacWarrior ClipBucket 5.5.1 Revision 200 up to 5.5.3 #59 Admin Template Editor folder path traversal
vuldb·2026-09-25·CVSS 7.2
CVE-2026-100372 [HIGH] MacWarrior ClipBucket 5.5.1 Revision 200 up to 5.5.3 #59 Admin Template Editor folder path traversal
A vulnerability identified as problematic has been detected in MacWarrior ClipBucket. This issue affects some unknown processing of the component Admin Template Editor. The manipulation of the argument folder leads to path traversal.
This vulnerability is uniquely identified as CVE-2026-100372. The attack is possible to be carried out remotely. No exploit exists.
You should upgrade the affected component.
GHSA
ClipBucket v5 before 5.5.3-#197 contains a path traversal vulnerability in the admin template editor that allows authenticated administrators to overwrite PHP files by supplying directory traversal se
ghsa_unreviewed·2026-09-25
CVE-2026-100372 [HIGH] CWE-22 ClipBucket v5 before 5.5.3-#197 contains a path traversal vulnerability in the admin template editor that allows authenticated administrators to overwrite PHP files by supplying directory traversal se
ClipBucket v5 before 5.5.3-#197 contains a path traversal vulnerability in the admin template editor that allows authenticated administrators to overwrite PHP files by supplying directory traversal sequences in the folder parameter. Attackers with manage_template_access permission can traverse outside the layout directory to modify executable PHP files and achieve remote code execution as the web server user.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://github.com/MacWarrior/clipbucket-v5https://github.com/MacWarrior/clipbucket-v5/blob/61cce55ab26ef88fb782dfde47b44c17c56978cd/upload/admin_area/template_editor.php#L44-L69https://github.com/MacWarrior/clipbucket-v5/commit/f31de49b2194482ffef7147aa1e9b1c8f0f04eb7https://github.com/MacWarrior/clipbucket-v5/releases/tag/5.5.3-%23197https://hackmd.io/@leediay/S1AIRjzqfxhttps://www.vulncheck.com/advisories/clipbucket-v5-before-5.5.3-197-path-traversal-via-template-editor-php
2026-09-25
Published