Browse all 4 CVE security advisories affecting Dulldusk. AI-powered Chinese analysis, POCs, and references for each vulnerability.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-72593 | dulldusk phpfm - Missing Authentication by Default Allows Full Filesystem Access — phpfm CWE-306 | 9.8 | Critical | 2026-08-10 |
| CVE-2026-72592 | dulldusk phpfm - Unauthenticated Remote Code Execution via Unrestricted PHP File Upload — phpfm CWE-434 | 9.8 | Critical | 2026-08-10 |
| CVE-2023-53894 | phpfm 1.7.9 Authentication Bypass via Type Juggling Vulnerability — phpfm CWE-1390 | 9.8 | Critical | 2025-12-16 |
| CVE-2024-5673 | Cross-Site Scripting in PHP File Manager by Dulldusk — PHP File Manager CWE-79 | 6.1 | Medium | 2024-06-06 |
This page lists every published CVE security advisory associated with Dulldusk. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.