Key Information CVE ID: CVE-2025-44022 Vulnerability Type: Remote Code Execution (RCE) Affected Software: Vvweb CMS v1.0.6 Vulnerability Cause: Remote code execution attack due to insecure validation in the plugin mechanism Discoverer: PawnCS Team Exploitation Steps 1. Create Malicious File: 2. Access Malicious Page: Visit to trigger remote code execution. Reference Links GitHub Issue GitHub Commit