Craft CMS GraphQL Privilege Escalation via Asset Mutation (CVE-2026-25497)
Security AdvisoryCVE-2026-25497HighCraft CMS
Affected:
- craftcms/cms >= 5.0.0-RC1, < 5.9.0-beta.1
- craftcms/cms >= 4.0.0-RC1, < 4.17.0-beta.1
Fixed in:
- 5.9.0-beta.1
- 4.17.0-beta.1
Referenced CVEs: CVE-2026-25497
This content was auto-fetched from github.com, cleaned by our LLM pipeline, and translated to English. View original.