Anchor CMS 0.12.3 is susceptible to an error log exposure vulnerability due to an issue in config/error.php. The error log is exposed at an errors.log URI, and contains MySQL credentials if a MySQL error (such as “Too many connections”) has occurred.
View the template here CVE-2018-7251.yaml
References:
https://github.com/anchorcms/anchor-cms/issues/1247