All 4 CVE vulnerabilities found in Umbraco.Forms.Issues, with AI-generated Chinese analysis, references, and POCs.
Vendor: umbraco
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-24687 | Umbraco.Forms has path traversal and file enumeration vulnerability in Linux/Mac CWE-22 | 4.9AI | MediumAI | 2026-01-29 |
| CVE-2025-47280 | Umbraco.Forms has HTML injection vulnerability in 'Send email' workflow CWE-116 | 4.7AI | MediumAI | 2025-05-13 |
| CVE-2025-23041 | Short and Long Answer Fields Are Not Validated Server-Side For Maximum Length in Umbraco.Forms CWE-20 | 5.8 | Medium | 2025-01-14 |
| CVE-2024-35239 | Stored Cross-site Scripting on Components of Umbraco Forms CWE-79 | 2.7 | Low | 2024-05-28 |
All 4 known CVE vulnerabilities affecting Umbraco.Forms.Issues with full Chinese analysis, references, and POCs where available.