CVE-2024-56145: Craft CMS Code Injection Vulnerability
CVE-2024-56145 affects Craft CMS Craft CMS and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2025-06-02.
Deep dives, practical guides, and incident analyses from engineers who build Safeguard. No fluff, no vendor FUD — just what you need to ship secure software.
CVE-2024-56145 affects Craft CMS Craft CMS and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2025-06-02.
CVE-2025-35939 affects Craft CMS Craft CMS and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2025-06-02.
CVE-2025-3935 affects ConnectWise ScreenConnect and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2025-06-02.
CVE-2021-32030 affects ASUS Routers and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2025-06-02.
CVE-2025-27038 affects Qualcomm Multiple Chipsets and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2025-06-03.
CVE-2025-21480 affects Qualcomm Multiple Chipsets and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2025-06-03.
CVE-2025-21479 affects Qualcomm Multiple Chipsets and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2025-06-03.
CVE-2025-5419 affects Google Chromium V8 and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2025-06-05.
CVE-2025-32433 affects Erlang Erlang/OTP and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2025-06-09.
Weekly insights on software supply chain security, delivered to your inbox.
Your first fix PR is minutes away.
No sales call required, even your agent can complete the purchase over MCP.