The US government warns this Popular CMS software has a worrying security failure


  • Cisa adds a CMS CMS bug to its Kev catalog
  • The bug was found in the CRST CMS 4 and 5 versions
  • It allows the execution of the remote code

The Safety Agency for Cybersecurity and Infrastructure of the United States Government (CISA) has added a new bug in CMS 4 and 5 versions of crafts in its known catalog on the exploited vulnerabilities (KEV), which concerns the alarm for abuses in nature.

Vulnerability is a lack of distant code execution (RCE) followed as CVE-2025-23209, but we do not know too many details on this subject, apart from the exploitation of the facts is not so simple.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top