### [CVE-2021-46361](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-46361) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen) ### Description An issue in the Freemark Filter of Magnolia CMS v6.2.11 and below allows attackers to bypass security restrictions and execute arbitrary code via a crafted FreeMarker payload. ### POC #### Reference - https://github.com/DrunkenShells/Disclosures/tree/master/CVE-2021-46361-FreeMarker%20Bypass-Magnolia%20CMS #### Github - https://github.com/ARPSyndicate/cvemon - https://github.com/mbadanoiu/CVE-2021-46361