Craft CMS versions 4.x through 4.17.8 and 5.x through 5.9.14 are vulnerable to multiple security issues, including Server-Side Request Forgery and unauthenticated JavaScript resource proxying.
This thread discusses multiple security vulnerabilities in Craft CMS, including Server-Side Request Forgery, unauthenticated JavaScript resource proxying, and user group manipulation. These issues affect specific versions of the CMS and hig…