- Description
- wikiplugin_includetpl in lib/wiki-plugins/wikiplugin_includetpl.php in Tiki before 28.3 mishandles input to an eval. The fixed versions are 21.12, 24.8, 27.2, and 28.3.
- Source
- cve@mitre.org
- NVD status
- Awaiting Analysis
CVSS 3.1
- Type
- Secondary
- Base score
- 9.9
- Impact score
- 6
- Exploitability score
- 3.1
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
- Severity
- CRITICAL
- cve@mitre.org
- CWE-1336
- Hype score
- Not currently trending
CVE-2025-32461 (CVSS:9.9, CRITICAL) is Awaiting Analysis. wikiplugin_includetpl in lib/wiki-plugins/wikiplugin_includetpl.php in Tiki before 28.3 mishandles input to an eval. The..https://t.co/DdLXblevtN #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre
@cracbot
14 Apr 2025
6 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
π΄ Critical security flaw (CVE-2025-32461) in Tiki CMS allows remote code execution via template injection. Affects versions prior to 28.3. Learn how to protect your systems now: https://t.co/AgglDubqEj #CVE2025 #CyberSecurity #TikiCMS #Infosec
@threatsbank
10 Apr 2025
5 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
π¨ CVE-2025-32461 β οΈπ΄ CRITICAL (9.9) π’ Tiki - Tiki ποΈ 0 π https://t.co/JbnJBDxdXO π https://t.co/48OjqaGeUU π https://t.co/CvXtoltNlk π https://t.co/6D4styQekg π https://t.co/DwwfGUQa5A π https://t.co/t6OE4zfjhr π https://t.co/vnhBWTUsNT #CyberCron #VulnAlert #InfoSec h
@cybercronai
9 Apr 2025
21 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes