Content Management System
48 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Content Management System, a product in the web cms plugins space. Use it to gauge the current risk picture and drill into individual advisories.
Content Management System CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 1 |
| 2024-12 | 0 |
| 2025-01 | 1 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 5 |
| 2025-06 | 5 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 4 |
| 2026-01 | 6 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 1 |
| 2026-05 | 0 |
| 2026-06 | 5 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 1 |
Severity
How the 48 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical3
- High18
- Medium27
Latest CVEs
The 15 most recently published vulnerabilities affecting Content Management System.
- CVE-2026-86168code-projects Content Management System login.php sql injection7.3
- CVE-2026-10265itsourcecode Content Management System edit_topic.php sql injection6.3
- CVE-2026-10258itsourcecode Content Management System add_sub_topic.php sql injection6.3
- CVE-2026-10257itsourcecode Content Management System update_ss_img.php sql injection6.3
- CVE-2026-10256itsourcecode Content Management System save_comment.php sql injection6.3
- CVE-2026-10242itsourcecode Content Management System instructions.php sql injection6.3
- CVE-2026-5333DefaultFuction Content-Management-System tools.php command injection7.3
- CVE-2025-7714Time Based SQLi in Global Medya's PHP CMS7.5
- CVE-2025-7713Reflected XSS in Global Medya's PHP CMS7.5
- CVE-2026-0567code-projects Content Management System pages.php sql injection7.3
- CVE-2026-0566code-projects Content Management System edit_posts.php unrestricted upload4.7
- CVE-2026-0565code-projects Content Management System delete.php sql injection7.3
- CVE-2026-0546code-projects Content Management System search.php sql injection7.3
- CVE-2025-15197code-projects/anirbandutta9 Content Management System/News-Buzz editposts.php unrestricted upload4.7
- CVE-2025-14731CTCMS Content Management System Frontend/Template Management CT_Parser.php special elements used in a template engine6.3
Product grouping is registry-driven, with AI assist and human review. How it works