HIGH7.5
GHSA-6j9m-rp7m-3gfg
SEOmatic plugin for Craft CMS SSTI Vulnerability
Quick fix
GHSA-6j9m-rp7m-3gfg — nystudio107/craft-seomatic: upgrade to the fixed version with the command below.
composer require nystudio107/craft-seomatic:^3.1.4Details
A Server Side Template Injection (SSTI) was discovered in the SEOmatic plugin before 3.1.4 for Craft CMS, because requests that don't match any elements incorrectly generate the canonicalUrl, and can lead to execution of Twig code.
Are you affected?
Enter the version of the package you're using.
Affected packages
Packagist/nystudio107/craft-seomatic
Introduced in:
0Fixed in: 3.1.4Fix
composer require nystudio107/craft-seomatic:^3.1.4References
- https://nvd.nist.gov/vuln/detail/CVE-2018-14716[ADVISORY]
- https://github.com/nystudio107/craft-seomatic/commit/1e7d1d084ac3a89e7ec70620f2749110508d1ce1[WEB]
- https://github.com/nystudio107/craft-seomatic[PACKAGE]
- https://github.com/nystudio107/craft-seomatic/releases/tag/3.1.4[WEB]
- https://twitter.com/nystudio107/status/1021847835418009605[WEB]
- https://twitter.com/nystudio107/status/1021855169515057152[WEB]
- https://www.exploit-db.com/exploits/45108[WEB]
- http://ha.cker.info/exploitation-of-server-side-template-injection-with-craft-cms-plguin-seomatic[WEB]