Описание
FoF Pretty Mail 1.1.2 contains a server-side template injection vulnerability that allows administrative users to inject malicious code into email templates. Attackers can execute system commands by inserting crafted template expressions that trigger arbitrary code execution during email generation.
EPSS
Процентиль: 8%
0.0003
Низкий
Дефекты
CWE-1336
Связанные уязвимости
github
около 2 месяцев назад
FoF Pretty Mail has a server-side template injection vulnerability
EPSS
Процентиль: 8%
0.0003
Низкий
Дефекты
CWE-1336