Логотип exploitDog
bind:CVE-2025-52122
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-52122

Количество 2

Количество 2

nvd логотип

CVE-2025-52122

6 месяцев назад

Freeform 5.0.0 to before 5.10.16, a plugin for CraftCMS, contains an Server-side template injection (SSTI) vulnerability, resulting in arbitrary code injection for all users that have access to editing a form (submission title).

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-9hp3-f5g8-rccg

6 месяцев назад

The Freeform CraftCMS plugin contains an Server-side template injection (SSTI) vulnerability

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-52122

Freeform 5.0.0 to before 5.10.16, a plugin for CraftCMS, contains an Server-side template injection (SSTI) vulnerability, resulting in arbitrary code injection for all users that have access to editing a form (submission title).

CVSS3: 9.8
0%
Низкий
6 месяцев назад
github логотип
GHSA-9hp3-f5g8-rccg

The Freeform CraftCMS plugin contains an Server-side template injection (SSTI) vulnerability

CVSS3: 9.8
0%
Низкий
6 месяцев назад

Уязвимостей на страницу