#CVE202632267

Offensive Sequenceoffseq@infosec.exchange
2026-03-17

🚨 CRITICAL: CVE-2026-32267 in Craft CMS (4.x <4.17.6, 5.x <5.9.12) — incorrect auth allows privilege escalation to admin via shared URLs. Upgrade ASAP! Details: radar.offseq.com/threat/cve-20 #OffSeq #CraftCMS #CVE202632267 #Vulnerability

Critical threat: CVE-2026-32267: CWE-863: Incorrect Authorization in craftcms cms

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst