PKSA-mmp9-wb2h-d8gy Security Advisory
-
[HIGH] Statamic Vulnerable to Superadmin Account Takeover via Stored Cross-Site Scripting and Lack of Proper X-CSRF-TOKEN Server-Side Validation
PKSA-mmp9-wb2h-d8gy CVE-2025-64112 GHSA-g59r-24g3-h7cm
Affected package: statamic/cms
Affected version: <=5.22.0
Reported by:
GitHub