CNNVD-202602-740 Information

CNNVD ID

CNNVD-202602-740

CVE-2026-24447

  • CNNVD Published: 2026-02-04

Description (Chinese)

Movable Type是Movable Type公司的一个内容管理系统。 Movable Type存在安全漏洞,该漏洞源于输入畸形数据时导出的CSV文件可能包含恶意代码,可能导致用户环境执行任意代码。

Description (English)

Movable Type is a content management system for Movable Type. There is a security loophole in Movable Type, which stems from the fact that CSV files produced when inputting deformed data may contain malicious codes that may lead to the implementation of arbitrary codes in the user environment.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Movable Type

Published

2026-02-04

Last Modified

2026-02-24

References

https://jvn.jp/en/jp/JVN45405689/ https://www.sixapart.jp/movabletype/news/2026/02/04-1100.html https://movabletype.org/news/2026/02/mt-906-released.html https://access.redhat.com/security/cve/cve-2026-24447

Patch

https://movabletype.org/news/2026/02/mt-906-released.html

Share on: