Improper Control of Dynamically-Managed Code Resources vulnerability in Crafter Studio of Crafter CMS allows authenticated developers to execute OS commands via FreeMarker SSTI.
{ "nvd_published_at": "2022-09-13T19:15:00Z", "cwe_ids": [ "CWE-78", "CWE-913" ], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2022-09-20T18:04:54Z" }