Critical CVSS: 9.8 CVE-2025-44022 An issue in vvveb CMS v.1.0.6 allows a remote attacker to execute arbitrary code via the Plugin mechanism.