DotCMS management system contains an arbitrary file upload vulnerability via the /api/content/ path which can allow attackers to upload malicious Trojans to obtain server permissions.
View the template here CVE-2022-26352.yaml
References:
https://nvd.nist.gov/vuln/detail/CVE-2022-26352