IntegSec[verified]@integ_secGeneral
The information provided only names a remote code execution vulnerability in the Formie Craft CMS Plugin, without details on PoC, patches, or active exploitation.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
The post announces CVE‑2026‑45697 as an unauthenticated Twig injection in a Craft CMS plugin, providing limited technical detail but no PoC, exploit, or patch information.
CVE@CVEnewDisclosure
The snippet announces CVE‑2026‑45697, noting that unauthenticated users can submit crafted values into hidden fields in the Formie plugin before versions 2.2.20 and 3.1.24, and references those versions as fixes.
DailyCVE@dailycveDisclosure
A new critical Twig injection vulnerability (CVE‑2026‑45697) has been disclosed for the Formie Plugin in Craft CMS, with no evidence of active exploitation or mitigations noted.