Back to Recipes

CraftCMS RCE Vulnerability Patch

Mat

A remote code execution vulnerability was discovered late 2024 that potentially makes Craft sites vulnerable to remote code execution attacks (CVE-2024-56145). This solution is suggested by the author of this article on the issue: https://www.assetnote.io/resources/research/how-an-obscure-php-footgun-led-to-rce-in-craft-cms Intended as a quick solution to patch a large number of sites at once until they can each be updated to a patched version of Craft CMS.

bash