Halo Blog CMS v1.4.17 was discovered to allow attackers to upload arbitrary files via the Attachment Upload function.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-26619.json"