CVE-2024-32640 | MasaCMS up to 7.2.7/7.3.12/7.4.5 processAsyncObject sql injection (GHSA-24rr-gwx3-jhqc)
A vulnerability, which was classified as critical, was found in MasaCMS up to 7.2.7/7.3.12/7.4.5. This affects the function processAsyncObject. The manipulation leads to sql injection.
This vulnerability is uniquely identified as CVE-2024-32640. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.