Offensive Sequence
Offensive Sequence
๐ŸŒ@offseq@infosec.exchangeยท
1 min read

๐Ÿ”Ž CVE-2026-32731 (CRITICAL, CVSS 10): Path traversal in ApostropheCMS import-export <3.5.3 lets attackers write files as Node.js user via crafted archives. Upgrade to 3.5.3+ and restrict permissions now! Details: radar.offseq.com/threat/cve-20

Critical threat: CVE-2026-32731: CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal

Marginalia