Pi-hole 4.4.0 Remote Code Execution
packetstormsecurity.com
packetstormsecurity.com
Also, here is actual info about the vuln: https://natedotred.wordpress.com/2020/03/28/cve-2020-8816-pi...
I bet most installs are running very old software.
Everyone else, action item: Make sure your pihole web interface is not public (duh) and that you set a non-trivial password (sorta duh)
For this CVE, here is a description: