Vulnerability CVE-2023-22953


Published: 2023-02-09

Description:
In ExpressionEngine before 7.2.6, remote code execution can be achieved by an authenticated Control Panel user.

 References:
https://hackerone.com/reports/1820492
https://docs.expressionengine.com/latest/installation/changelog.html

Copyright 2026, cxsecurity.com

 

Back to Top