CVE-2026-54708 | FreePBX up to 16.0.71/17.0.6 Backup code injection

SecurityVulns

A vulnerability described as very critical has been identified in FreePBX up to 16.0.71/17.0.6. This affects an unknown function of the component Backup Module. Such manipulation leads to code injection.

This vulnerability is uniquely identified as CVE-2026-54708. The attack can be launched remotely. No exploit exists.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More