Known vulnerabilities in Pixel & Tonic, Inc. Craft CMS 4.14.9

Website: https://craftcms.com/
Total Security Bulletins: 6

Security bulletins (6)

Secuity bulletin Severity Status Published
SB2026021833: Multiple vulnerabilities in Craft CMS Medium
Patched Public exploit
18.02.2026
SB2026021831: Privilege escalation in Craft CMS Medium
Patched
18.02.2026
SB2026010560: Multiple vulnerabilities in Craft CMS High
Patched Public exploit
05.01.2026
SB2025060309: Improper input validation in Craft CMS Medium
Patched Exploited
03.06.2025
SB2025050549: Authenticated SSTI in Craft CMS Low
Patched Public exploit
05.05.2025
SB2025042834: Remote code execution in Craft CMS Critical
Patched Exploited
28.04.2025