Executive brief
CI4MS Backup::restore is vulnerable to Zip Slip leading to RCE
Affected products
- Packagist ci4-cms-erp/ci4ms
Junglewise Threat Intelligence
CVE-2026-41202 · Severity: medium · CVSS 4 · Published 2026-04-22
Technologies: ci4-cms-erp/ci4ms (Packagist). Vendors: Packagist.
CI4MS Backup::restore is vulnerable to Zip Slip leading to RCE