
🚨*CVE* CVE-2026-31858 Craft is a content management system (CMS). The ElementSearchController::actionSearch() endpoint is missing the unset() protection that was added to ElementIndexesCon… https://www.cve.org/CVERecord?id=CVE-2026-31858 ----- Traducción: CVE-2026-31858 Cra… http://infoflow.cloud`
Post summary
The tweet references CVE-2026-31858 for Craft CMS, noting a missing unset protection in the ElementSearchController endpoint and linking only to the CVE record, without providing PoC, exploit, or patch details.

