Description
Craft CMS is a platform for creating digital experiences. This is a high-impact, low-complexity attack vector. Users running Craft installations before 4.4.15 are encouraged to update to at least that version to mitigate the issue. This issue has been fixed in Craft CMS 4.4.15.
Published: 2023-09-13
Score: 10 Critical
EPSS: 93.9% High
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Github GHSA Github GHSA GHSA-4w8r-3xrw-v25g Craft CMS Remote Code Execution vulnerability
History

No history.

Subscriptions

Craftcms Craft Cms
cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published:

Updated: 2025-02-13T17:09:04.188Z

Reserved: 2023-09-04T16:31:48.225Z

Link: CVE-2023-41892

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-09-13T20:15:08.187

Modified: 2024-11-21T08:21:52.050

Link: CVE-2023-41892

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses