CVE-2023-36097 - How Funadmin v3.3.2 and v3.3.3 Got Hacked by Insecure Plugin Uploads
If you run a site with Funadmin, a popular open-source admin system for PHP, here’s something you *really* need to know. CVE-2023-36097 highlights a