PT-2026-81314 · Undefined · Undefined
CVE-2026-73858
·
Publicado
2026-08-25
·
Atualizado
2026-08-25
Nenhuma
Não há classificações de severidade ou métricas disponíveis. Quando houver, atualizaremos as informações correspondentes na página.
During a pentest engagement, I discovered a Server-Side Template Injection (SSTI) vulnerability in the Freeform plugin, used by Craft CMS.
I disclosed the vulnerability to the vendor (Solspace) through a responsible disclosure process, which resulted in CVE-2026-73858 being assigned.
🔗 Advisory: https://t.co/2j1SLH1iwF #CVE #Pentest #SSTI #CraftCMS #SecurityResearch #InfoSec
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Undefined