CVE-2024-28386: Home-Made Fastmag Sync
Critical severity, CVSS 9.8. EPSS: 1.5% chance of exploitation in the next 30 days.
An issue in Home-Made.io fastmagsync v.1.7.51 and before allows a remote attacker to execute arbitrary code via the getPhpBin() component.
Affected products
- Home-Made Fastmag Sync: up to and including 1.7.51
Published 2024-03-25. Last modified 2026-07-09.