CISA flags Craft CMS code injection flaw as exploited in attacks

Published on February 21, 2025

The U.S. Cybersecurity & Infrastructure Security Agency (CISA) warns that a Craft CMS remote code execution flaw is being exploited in attacks. [...]