CVE-2023-37649 - How Incorrect Access Controls in Cockpit CMS v2.5.2 Expose Sensitive Data
Cockpit CMS is a popular, headless content management system (CMS) widely embraced by developers building flexible, API-powered websites and apps. But sometimes, even flexible power