CVE-2024-45398 — Contao is an Open Source CMS. In affected versions a back end user with access to the file manager can upload malicious files and execute them on the server. Users are advised to update to Contao 4.13 — CVE Database · The Intelligence Room