PKSA-8wnz-z9p8-kd44 Security Advisory
-
[HIGH] Statamic has Stored XSS via SVG Sanitization Bypass
PKSA-8wnz-z9p8-kd44 CVE-2026-33172 GHSA-7rcv-55mj-chg7
Affected package: statamic/cms
Affected version: <5.73.14|>=6.0.0-alpha.1,<6.7.0
Reported by:
GitHub