Описание
Statamic is a Laravel and Git powered content management system (CMS). Prior to 5.74.1 and 6.24.0, manipulating user-supplied input incorporated into Antlers templates could result in the loss of content and assets, on sites whose templates pass untrusted input into affected areas, and exploitation did not require authentication. This issue is fixed in versions 5.74.1 and 6.24.0.
EPSS
Процентиль: 22%
0.00296
Низкий
6.5 Medium
CVSS3
Дефекты
CWE-470
Связанные уязвимости
CVSS3: 6.5
github
3 дня назад
Statamic: Unsafe method invocation via Antlers template resolution allows data destruction
EPSS
Процентиль: 22%
0.00296
Низкий
6.5 Medium
CVSS3
Дефекты
CWE-470