Raytha CMS allows an attacker to spoof `X-Forwarded-Host` or `Host` headers to attacker controlled domain. The attacker (who knows the…
CERT-PL·CWE-348·Published 2026-03-16