CVE-2023-30130, GHSA-fjx5-xm7q-whvj
packagist/craftcms/cms
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
An issue found in CraftCMS v.3.8.1 allows a remote attacker to execute arbitrary code via a crafted script to the Section parameter.
All versions before 3.8.2
Upgrade to version 3.8.2 or above.
2023-05-15
source |