| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-59113 | Bruteforce Protection Bypass in Windu CMS | JCD | Windu CMS | - | - | 2025-11-18 13:26:32 | Deep Dive |
| CVE-2025-59112 | Cross-Site Request Forgery in Windu CMS | JCD | Windu CMS | - | - | 2025-11-18 13:26:31 | Deep Dive |
| CVE-2025-59110 | Cross-Site Request Forgery in Windu CMS | JCD | Windu CMS | - | - | 2025-11-18 13:26:29 | Deep Dive |
| CVE-2025-11260 | WP Headless CMS Framework <= 1.15 - Unauthenticated Protection Mechanism Bypass | benmoody | WP Headless CMS Framework | Medium | 5.3 | 2025-11-13 08:27:48 | Deep Dive |
| CVE-2025-10295 | Angel – Fashion Model Agency WordPress CMS Theme <= 3.2.3 - Authenticated (Subscriber+) Stored Cross-Site Scripting | kayapati | Angel – Fashion Model Agency WordPress CMS Theme | Medium | 6.4 | 2025-11-13 08:27:47 | Deep Dive |
| CVE-2025-62369 | Xibo CMS: Remote Code Execution through module templates | xibosignage | xibo-cms | High | 7.2 | 2025-11-04 21:18:39 | Deep Dive |
| CVE-2025-64112 | Statmatic vulnerable to Stored Cross-Site Scripting | statamic | cms | High | 8.0 | 2025-10-30 17:47:01 | Deep Dive |
| CVE-2025-12347 | MaxSite CMS save-file-ajax.php unrestricted upload | MaxSite | CMS | Medium | 6.3 | 2025-10-28 02:02:13 | Deep Dive |
| CVE-2025-12346 | MaxSite CMS HTTP Header uploads-require-maxsite.php unrestricted upload | MaxSite | CMS | Medium | 6.3 | 2025-10-28 02:02:09 | Deep Dive |
| CVE-2025-12331 | Willow CMS add unrestricted upload | Willow | CMS | Medium | 4.7 | 2025-10-27 22:02:08 | Deep Dive |
| CVE-2025-12330 | Willow CMS Add Post add cross site scripting | Willow | CMS | Low | 2.4 | 2025-10-27 22:02:06 | Deep Dive |
| CVE-2025-11941 | e107 CMS Avatar image.php path traversal | e107 | CMS | Medium | 5.4 | 2025-10-19 15:32:10 | Deep Dive |
| CVE-2025-41089 | Reflected Cross-Site Scripting (XSS) in CMS | Xibo Signage | Xibo CMS | - | - | 2025-10-10 09:19:18 | Deep Dive |
| CVE-2025-41088 | Stored Cross-Site Scripting (XSS) in CMS | Xibo Signage | Xibo CMS | - | - | 2025-10-10 09:17:33 | Deep Dive |
| CVE-2025-54477 | Joomla! Core - [20250902] User-Enumeration in passkey authentication method | Joomla! Project | Joomla! CMS | - | - | 2025-09-30 16:02:40 | Deep Dive |
| CVE-2025-54476 | Joomla! Core - [20250901] Inadequate content filtering within the checkAttribute filter code | Joomla! Project | Joomla! CMS | - | - | 2025-09-30 16:02:39 | Deep Dive |
| CVE-2025-8122 | Blind SQL Injection in PAD CMS | Polska Akademia Dostępności | PAD CMS | - | - | 2025-09-30 10:05:21 | Deep Dive |
| CVE-2025-8121 | Blind SQL Injection in PAD CMS | Polska Akademia Dostępności | PAD CMS | - | - | 2025-09-30 10:05:13 | Deep Dive |
| CVE-2025-8120 | Remote Code Execution via Unrestricted File Upload in PAD CMS | Polska Akademia Dostępności | PAD CMS | - | - | 2025-09-30 10:05:03 | Deep Dive |
| CVE-2025-8119 | Cross-Site Request Forgery in PAD CMS | Polska Akademia Dostępności | PAD CMS | - | - | 2025-09-30 10:04:55 | Deep Dive |