This top CMS has a major vulnerability that could affect millions of websites

PHPFusion, a leading open-source content management system (CMS), has multiple vulnerabilities that could compromise countless websites, experts warn.

A report from Synopsys researchers who discovered the flaws described one of the vulnerabilities as an authenticated local file recording error, now tracked as CVE-2023-2453. If a hacker can upload a malicious PHP file to a known path on a target system, the flaw would allow them to execute arbitrary code on a remote endpoint.