VDB

GCVE-110-COMPOSER-2026-041946

GCVE-110-COMPOSER-2026-041946
Advisory Published
Vulnetix · Advisory published July 14, 2026
[IOC-STIX-MATCH] Malicious domain open.spotify.com — referenced in amazingbv/statamic-gutenberg/composer — matched: 'providerUrl' => 'https://open.spotify.com/',

Weaknesses (CWE)

CWE-506Embedded Malicious Code

Affected Products

VendorProductVersionsPlatforms
packagistamazingbv/statamic-gutenberg* (affected)

References

advisory
web

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›