Robuta

Sponsor of the Day: Jerkmate
https://civicrm.org/advisory/civi-sa-2026-01-file-api-remote-code-execution CIVI-SA-2026-01: File API - Remote Code Execution | CiviCRM civi sa 2026remote code executionfile api01civicrm https://civicrm.org/advisory/civi-sa-2025-02-contact-images-csrf CIVI-SA-2025-02: Contact Images (CSRF) | CiviCRM civi sa2025 02imagescsrfcivicrm https://civicrm.org/advisory/civi-sa-2025-04-arbitrary-file-move CIVI-SA-2025-04: Arbitrary File Move | CiviCRM civi sa2025 04arbitrary filemovecivicrm https://civicrm.org/advisory/civi-sa-2026-12-pdf-formats-xss CIVI-SA-2026-12: PDF Formats (XSS) | CiviCRM civi sa 2026pdf formats12xsscivicrm https://civicrm.org/advisory/civi-sa-2026-03-standalone-extraneous-staff-permission CIVI-SA-2026-03: Standalone - Extraneous Staff Permission | CiviCRM civi sa 202603standaloneextraneousstaff https://civicrm.org/advisory/civi-sa-2026-05-apiv3-explorer-xss CIVI-SA-2026-05: APIv3 Explorer (XSS) | CiviCRM civi sa 202605apiv3explorerxss