| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-32262 | Craft CMS has a Path Traversal Vulnerability in AssetsController | craftcms | cms | - | - | 2026-03-16 18:57:47 | Deep Dive |
| CVE-2026-4225 | CMS Made Simple User Management listusers.php cross site scripting | - | CMS Made Simple | Low | 2.4 | 2026-03-16 07:32:08 | Deep Dive |
| CVE-2013-20006 | Qool CMS Multiple Persistent Cross-Site Scripting Vulnerabilities | Qool | Qool CMS | High | 7.5 | 2026-03-15 18:34:11 | Deep Dive |
| CVE-2013-20005 | Qool CMS 2.0 RC2 Cross-Site Request Forgery via adduser | Qool | Qool CMS | Medium | 5.3 | 2026-03-15 18:34:10 | Deep Dive |
| CVE-2026-32612 | Statamic: privilege escalation via stored cross-site scripting | statamic | cms | Medium | 5.4 | 2026-03-12 21:47:22 | Deep Dive |
| CVE-2019-25529 | Placeto CMS Alpha rv.4 SQL Injection via page Parameter | Sourceforge | Placeto CMS | High | 7.1 | 2026-03-12 15:37:00 | Deep Dive |
| CVE-2026-31859 | Craft has Reflective XSS via incomplete return URL sanitization | craftcms | cms | - | - | 2026-03-11 17:37:19 | Deep Dive |
| CVE-2026-31858 | CraftCMS's `ElementSearchController` Affected by Blind SQL Injection | craftcms | cms | - | - | 2026-03-11 17:35:07 | Deep Dive |
| CVE-2026-31857 | CraftCMS has an RCE vulnerability via relational conditionals in the control panel | craftcms | cms | - | - | 2026-03-11 17:30:29 | Deep Dive |
| CVE-2026-31834 | Umbraco Affected by Vertical Privilege Escalation via Missing Authorization Checks | umbraco | Umbraco-CMS | High | 7.2 | 2026-03-10 21:53:49 | Deep Dive |
| CVE-2026-31833 | Umbraco has Stored XSS in UFM Rendering Pipeline via Permissive DOMPurify Attribute Filtering | umbraco | Umbraco-CMS | Medium | 6.7 | 2026-03-10 21:51:51 | Deep Dive |
| CVE-2026-31832 | Umbraco Backoffice API Allows Unauthorized Modification of Domain Data | umbraco | Umbraco-CMS | Medium | 5.4 | 2026-03-10 21:49:55 | Deep Dive |
| CVE-2026-29113 | Craft has a potential information disclosure vulnerability in preview tokens | craftcms | cms | - | - | 2026-03-10 19:44:45 | Deep Dive |
| CVE-2026-1776 | Camaleon CMS AWS Uploader Authenticated Path Traversal Arbitrary File Read | owen2345 | Camaleon CMS | - | - | 2026-03-09 21:08:07 | Deep Dive |
| CVE-2026-3818 | Tiandy Easy7 CMS Windows GetDBData.jsp sql injection | Tiandy | Easy7 CMS Windows | High | 7.3 | 2026-03-09 12:02:22 | Deep Dive |
| CVE-2026-3743 | YiFang CMS D_singlePageGroup.php update cross site scripting | YiFang | CMS | Low | 3.5 | 2026-03-08 15:02:10 | Deep Dive |
| CVE-2026-3742 | YiFang CMS D_singlePage.php update cross site scripting | YiFang | CMS | Low | 3.5 | 2026-03-08 15:02:08 | Deep Dive |
| CVE-2026-3741 | YiFang CMS D_friendLink.php update cross site scripting | YiFang | CMS | Low | 3.5 | 2026-03-08 14:32:11 | Deep Dive |
| CVE-2018-25200 | OOP CMS BLOG 1.0 Cross-Site Request Forgery via addUser.php | Zsoft | OOP CMS BLOG | Medium | 5.3 | 2026-03-06 12:19:23 | Deep Dive |
| CVE-2018-25199 | OOP CMS BLOG 1.0 SQL Injection via search parameter | Zsoft | OOP CMS BLOG | High | 8.2 | 2026-03-06 12:19:22 | Deep Dive |