
CVE-2026-29069 Craft is a content management system (CMS). Prior to 5.9.0-beta.2 and 4.17.0-beta.2, the actionSendActivationEmail() endpoint is accessible to unauthenticated users a… https://www.cve.org/CVERecord?id=CVE-2026-29069
Post summary
The text announces CVE‑2026‑29069 in Craft CMS, detailing unauthenticated access to the actionSendActivationEmail() endpoint before specific versions.
