
CVE-2026-25492 Craft CMS is a content management system. In Craft versions 3.5.0 through 4.16.17 and 5.0.0-RC1 through 5.8.21, the save_images_Asset GraphQL mutation can be abused t… https://www.cve.org/CVERecord?id=CVE-2026-25492
Post summary
The post announces CVE‑2026‑25492, indicating it affects specific Craft CMS versions through a GraphQL mutation abuse, but offers no exploit code, patches, or evidence of active exploitation.

