Количество 2
Количество 2
CVE-2025-52122
6 месяцев назад
Freeform 5.0.0 to before 5.10.16, a plugin for CraftCMS, contains an Server-side template injection (SSTI) vulnerability, resulting in arbitrary code injection for all users that have access to editing a form (submission title).
CVSS3: 9.8
EPSS: Низкий
GHSA-9hp3-f5g8-rccg
6 месяцев назад
The Freeform CraftCMS plugin contains an Server-side template injection (SSTI) vulnerability
CVSS3: 9.8
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-52122 Freeform 5.0.0 to before 5.10.16, a plugin for CraftCMS, contains an Server-side template injection (SSTI) vulnerability, resulting in arbitrary code injection for all users that have access to editing a form (submission title). | CVSS3: 9.8 | 0% Низкий | 6 месяцев назад | |
GHSA-9hp3-f5g8-rccg The Freeform CraftCMS plugin contains an Server-side template injection (SSTI) vulnerability | CVSS3: 9.8 | 0% Низкий | 6 месяцев назад |
Уязвимостей на страницу
20