GHSA-9fvq-jx89-q558High

The Twig sandbox mechanism in Craft CMS is configured to allow dangerous functionality from the...

Published
August 27, 2026
Last Modified
August 27, 2026

🔗 CVE IDs covered (1)

📋 Description

The Twig sandbox mechanism in Craft CMS is configured to allow dangerous functionality from the Yii framework, leading to authenticated RCE similar to previously disclosed vulnerabilities.

🔗 References (5)