Cacti contains a command injection vulnerability that allows an unauthenticated user to execute code.
Source: NVD ↗ · CISA KEV Catalog ↗