
CVE-2026-28783 Craft is a content management system (CMS). Prior to 5.9.0-beta.1 and 4.17.0-beta.1, Craft CMS implements a blocklist to prevent potentially dangerous PHP functions f… https://www.cve.org/CVERecord?id=CVE-2026-28783
Post summary
The passage describes CVE‑2026‑28783, noting a blocklist flaw in Craft CMS and indicating that versions 5.9.0‑beta.1 and 4.17.0‑beta.1 include a fix.
