CVE-2025-32017 - Umbraco Authenticated RCE

Authenticated remote code execution vulnerability in Umbraco CMS

Summary

An authenticated remote code execution vulnerability was discovered in Umbraco CMS. An authenticated attacker with low-level privileges can exploit this vulnerability to execute arbitrary code on the server.

Impact

Remote code execution as the application user, potentially leading to full server compromise.