CVE-2025-14700

9.9CRITICAL

An input neutralization vulnerability in the Webhook Template component of Crafty Controller allows a remote, authenticated attacker to perform remote code execution via Server Side Template Injection

发布于: 12/17/2025更新于: 12/23/2025

描述

An input neutralization vulnerability in the Webhook Template component of Crafty Controller allows a remote, authenticated attacker to perform remote code execution via Server Side Template Injection.

AI分析AI驱动

受影响产品

craftycontrolcrafty_controller
4.6.1

参考资料