SPIP CMS patches critical RCE flaw
CERT-FR warns that SPIP versions before 4.4.23 contain flaws enabling remote code execution and privilege escalation.
CERT-FR issued an advisory regarding multiple vulnerabilities in SPIP, an open-source content management system, affecting all versions prior to 4.4.23. The vulnerabilities can be exploited by an attacker to achieve remote code execution and privilege escalation on affected systems. No specific technical details of the exploitation chain were disclosed in the advisory.
The SPIP editorial team released a security bulletin on 02 September 2026 alongside the patched version 4.4.23. Administrators running SPIP-based websites are advised to consult the vendor's security bulletin and apply the available patches promptly to mitigate the risk of remote compromise. There is no indication in this advisory of active exploitation in the wild; the severity relates to the potential impact (RCE and privilege escalation) rather than confirmed attacker activity.
Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-1109
This is the public brief
Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.
Start free