Menu

Post image 1
Post image 2
1 / 2
0

Critical MetInfo CMS Vulnerability CVE-2026-29014 Under Active Exploitation

DEV Community·BeyondMachines·28 days ago
#PcegUZeU
Reading 0:00
15s threshold
Cover image for Critical MetInfo CMS Vulnerability CVE-2026-29014 Under Active Exploitation

Summary

MetInfo CMS is actively exploited via CVE-2026-29014, a critical PHP code injection vulnerability that allows unauthenticated attackers to gain full remote control of servers. Exploitation surged in early May, primarily targeting deployments in Singapore and the United States through automated probing.

Take Action:

If you run MetInfo CMS, update it immediately and check your logs for unauthorized PHP execution. Internet-facing instances are being actively scanned and exploited by automated tools.


Read the full article on BeyondMachines


This article was originally published on BeyondMachines

Read More