craftcms/cms is vulnerable to Cache Poisoning
26
Low Risk
The dashboard Feed widget caches fetched feed content under a cache key derived only from the feed URL, so the entry is shared across all control panel users. The endpoint that stores feed data accepts a URL and arbitrary data from any authenticated user and writes it to that shared key. Because the key is not scoped to the requesting user, one user can store feed content that another user's Feed widget then reads and renders. The fix scopes the feed cache key to the current user's ID so cached feed data is isolated per user.
You are affected if you are using a version that falls within the vulnerable range and control panel users make use of the dashboard Feed widget.
craftcms/cms is vulnerable to Cache Poisoning in versions 3.5.0 - 5.10.8.1.
Upgrade the craftcms/cms library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant