Browse all 4 CVE security advisories affecting ProcessMaker. AI-powered Chinese analysis, POCs, and references for each vulnerability.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-107803 | ProcessMaker has SQL injection in the tasks endpoint through the order_by parameter — processmaker CWE-89 | 6.5 | Medium | 2026-10-09 |
| CVE-2021-47978 | ProcessMaker 3.5.4 Local File Inclusion via Path Traversal — ProcessMaker CWE-98 | 6.2 | Medium | 2026-05-16 |
| CVE-2016-9045 | ProcessMaker Enterprise Core 安全漏洞 — ProcessMaker Enterprise | 8.8 | - | 2018-09-17 |
| CVE-2016-9048 | ProcessMaker Enterprise Core SQL注入漏洞 — ProcessMaker Enterprise | 9.8 | - | 2018-09-10 |
This page lists every published CVE security advisory associated with ProcessMaker. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.