Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-x487-866m-p8hr: Server-Side Template Injection in Camaleon CMS

Camaleon CMS prior to 2.7.4 was discovered to contain a Server-Side Template Injection (SSTI) vulnerability via the formats parameter.

ghsa
#vulnerability#git

Server-Side Template Injection in Camaleon CMS

Moderate severity GitHub Reviewed Published May 26, 2023 to the GitHub Advisory Database • Updated May 26, 2023

Related news

Camaleon CMS 2.7.0 Server-Side Template Injection

Camaleon CMS version 2.7.0 suffers from a server-side template injection vulnerability.

CVE-2023-30145: GitHub - paragbagul111/CVE-2023-30145: Camaleon CMS v2.7.0 contain a Server-Side Template Injection (SSTI) vulnerability

Camaleon CMS v2.7.0 was discovered to contain a Server-Side Template Injection (SSTI) vulnerability via the formats parameter.