THREATOPS
THREAT OPSThreat News › [GHSA] GHSA-rjhh-76wf-8xmw (medium) — Smarty Security stream restriction bypass through stream: resource

[GHSA] GHSA-rjhh-76wf-8xmw (medium) — Smarty Security stream restriction bypass through stream: resource

highgithub_advisoriesPublished 2026-08-07

GHSA-rjhh-76wf-8xmw Severity: medium CVE: CVE-2026-62996

Smarty Security stream restriction bypass through stream: resource

`smarty/smarty` version `5.8.0` can read local files through PHP stream wrappers even when Smarty Security is enabled and all streams are disabled with `Security::$streams = null`.

The bypass uses Smarty's built-in `stream:` resource type. A template such as:

```smarty {i

MITRE ATT&CK techniques

Indicators of compromise

Original source: https://github.com/advisories/GHSA-rjhh-76wf-8xmw