Description
An issue was discovered in SmtpTransport in CakePHP 3.7.6. An unserialized object with modified internal properties can trigger arbitrary file overwriting upon destruction.
Remediation
References
Related Vulnerabilities
XWiki Improper Restriction of Excessive Authentication Attempts Vulnerability (CVE-2023-26476)
MySQL CVE-2020-14559 Vulnerability (CVE-2020-14559)
WordPress Plugin Google Analytics MU Cross-Site Request Forgery (2.3.1)
WordPress Plugin WP-Recall-Registration, Profile, Commerce & More SQL Injection (16.26.5)