First published: Thu Jun 17 2021(Updated: )
In CiviCRM before 5.21.3 and 5.22.x through 5.24.x before 5.24.3, users may be able to upload and execute a crafted PHAR archive.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Civicrm Civicrm | <5.21.3 | |
Civicrm Civicrm | >=5.22.0<5.24.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.