matyhtf framework v3.0.5 is affected by a path manipulation vulnerability in Smarty.class.php. The issue was fixed in version 3.0.6.
References
https://nvd.nist.gov/vuln/detail/CVE-2021-43676
https://github.com/matyhtf/framework/issues/206
https://git…