CVE-2026-79988 | craftcms Craft CMS up to 4.18.2/5.10.6 Twig Sandbox privileges management
A vulnerability, which was classified as critical, has been found in craftcms Craft CMS up to 4.18.2/5.10.6. Affected is an unknown function of the component Twig Sandbox. Performing a manipulation results in improper privilege management.
This vulnerability is known as CVE-2026-79988. Remote exploitation of the attack is possible. No exploit is available.
It is advisable to upgrade the affected component.VulDB Recent EntriesRead More