MEDIUMPackagist
GHSA-96pq-hxpw-rgh8· CVE-2026-25492Craft CMS: save_images_Asset graphql mutation can be abused to exfiltrate AWS credentials of underlying host
Modified: 9/10/2026
package
pkg:packagist/craftcms/craft
Craft CMS: save_images_Asset graphql mutation can be abused to exfiltrate AWS credentials of underlying host
Modified: 9/10/2026