In the SEOmatic plugin before 3.2.49 for Craft CMS, helpers/DynamicMeta.php does not properly sanitize the URL. This leads to Server-Side Template Injection and credentials disclosure via a crafted Twig template after a semicolon.
{
"nvd_published_at": "2020-05-11T19:15:00Z",
"severity": "HIGH",
"github_reviewed_at": "2023-07-13T00:18:26Z",
"cwe_ids": [
"CWE-74"
],
"github_reviewed": true
}