CVE-2021-45807
jpress Command Execution Vulnerability CVE-2021-45807
Halo Surface Signal: 4 out of 5 — likely to be public-facing.
A command execution vulnerability exists in jpress, a web content system, that could allow an unauthenticated attacker to run arbitrary commands. This is a critical issue if the upload functionality is reachable over the network, potentially impacting server integrity and availability.