Vulnerabilities > Spitfire Project

DATE CVE VULNERABILITY TITLE RISK
2023-01-10 CVE-2022-47083 Deserialization of Untrusted Data vulnerability in Spitfire Project Spitfire 1.0475
A PHP Object Injection vulnerability in the unserialize() function Spitfire CMS v1.0.475 allows authenticated attackers to execute arbitrary code via sending crafted requests to the web application.
network
low complexity
spitfire-project CWE-502
8.8