Security Advisory

CVE-2023-29689

9.8
CRITICAL

Vulnerability Description

PyroCMS 3.9 contains a remote code execution (RCE) vulnerability that can be exploited through a server-side template injection (SSTI) flaw. This vulnerability allows a malicious attacker to send customized commands to the server and execute arbitrary code on the affected system.
Published Date August 4, 2023
Official Source NIST NVD Advisory