CVE-2025-23209: Craft CMS Code Injection Vulnerability. Craft CMS contains

Craft CMS Code Injection Vulnerability. Craft CMS contains a code injection vulnerability caused by improper validation of the database backup path, ultimately enabling remote code execution.

Browse the CVE database

Read the full analysis on IntelFusions