Pterodactyl is a free, open-source game server management panel. Using the /locales/locale.json with the locale and namespace query parameters, a malicious actor is able to execute arbitrary code without being authenticated.
id: CVE-2025-49132
info:
name: Pterodactyl Panel - Remote Code Execution
severity: critical
a
...