All 3 CVE vulnerabilities found in tarzan-cms, with AI-generated Chinese analysis, references, and POCs.
Vendor: taisan
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-90710 | taisan tarzan-cms Theme Download Function ThemeService.java openConnection server-side request forgery CWE-918 | 7.3 | High | 2026-09-14 |
| CVE-2025-1113 | taisan tarzan-cms Add Theme admin#themes upload deserialization CWE-502 | 6.3 | Medium | 2025-02-07 |
| CVE-2024-13022 | taisan tarzan-cms Article Management UploadController.java UploadResponse unrestricted upload CWE-434 | 6.3 | Medium | 2024-12-29 |
All 3 known CVE vulnerabilities affecting tarzan-cms with full Chinese analysis, references, and POCs where available.