CVE-2026-78416 | CraftCMS Craft CMS up to 4.18.1/5.10.5 Condition command injection
A vulnerability marked as problematic has been reported in CraftCMS Craft CMS up to 4.18.1/5.10.5. Affected by this vulnerability is an unknown functionality of the component Condition Handler. Performing a manipulation results in command injection.
This vulnerability was named CVE-2026-78416. The attack may be initiated remotely. There is no available exploit.
It is suggested to upgrade the affected component.VulDB Recent EntriesRead More