Discussion

MetInfo CMS CVE-2026-29014 Exploited for Remote Code Execution Attacks

Started by The Hacker News · 05 May 2026 15:55 · 31 Views · 0 Replies
Thread Starter #0
Threat actors are actively exploiting a critical security flaw impacting an open-source content management system (CMS) known as MetInfo, according to new findings from VulnCheck. The vulnerability in question is CVE-2026-29014 (CVSS score: 9.8), a code injection flaw that could result in arbitrary code execution. "MetInfo CMS versions 7.9, 8.0, and 8.1 contain an unauthenticated PHP code

Okumaya devam et...

You must be logged in to reply.

0 quotes selected