在 SeaCMS 13.6 及更早版本中发现一个安全漏洞。受影响的组件是模板引擎中的 文件里的 函数。通过对 参数的不当处理,可触发代码注入漏洞。该漏洞可被远程利用。此漏洞已被公开披露,并存在可用的利用方式(PoC)。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | SeaCMS | 13.0 |
cpe:2.3:a:seacms:seacms:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-82599 | 5.4 MEDIUM | SeaCMS Avatar Upload member.php unlink path traversal |
| CVE-2026-82596 | 3.3 LOW | LatencyUtils PauseDetector LatencyStats.java LatencyStats.recordDetectedPause memory corru |
No comments yet