PT-2026-81314 · Undefined · Undefined

CVE-2026-73858

·

Publicado

2026-08-25

·

Atualizado

2026-08-25

Nenhuma

Não há classificações de severidade ou métricas disponíveis. Quando houver, atualizaremos as informações correspondentes na página.
During a pentest engagement, I discovered a Server-Side Template Injection (SSTI) vulnerability in the Freeform plugin, used by Craft CMS. I disclosed the vulnerability to the vendor (Solspace) through a responsible disclosure process, which resulted in CVE-2026-73858 being assigned. 🔗 Advisory: https://t.co/2j1SLH1iwF #CVE #Pentest #SSTI #CraftCMS #SecurityResearch #InfoSec
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2026-73858

Produtos afetados

Undefined