Code Execution Vulnerability in Statamic by Statamic
CVE-2021-45364

9.8CRITICAL

Key Information:

Vendor

Statamic

Status
Vendor
CVE Published:
10 February 2022

What is CVE-2021-45364?

A potential code execution vulnerability exists in Statamic versions up to 3.2.26 through the SettingsController.php file. Although the vendor reported an error in publishing this CVE, it is crucial for users to be aware that the affected code was deemed not used in any Statamic product. Keeping software updated and monitoring for security patches remains vital for maintaining the integrity of web applications.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.