Tuzitio
4 CVEs tracked since 2021. Since Oct 2021, none of them reached CISA KEV.
Tuzitio CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2021-10 | 4 | 0 |
Products
The products that kept showing up in Tuzitio's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 11 most recently published vulnerabilities affecting Tuzitio.
- CVE-2026-1776Camaleon CMS AWS Uploader Authenticated Path Traversal Arbitrary File Read6.5
- CVE-2023-53936Cameleon CMS 2.7.4 Authenticated Persistent Cross-Site Scripting via Post Creation4.8
- CVE-2024-48652Cross Site Scripting vulnerability in camaleon-cms v.2.7.5 allows remote attacker to execute arbitrary code via the content group name field.4.8
- CVE-2024-46987Arbitrary path traversal in Camaleon CMS7.7
- CVE-2024-46986Arbitrary file write leading to RCE in Camaleon CMS9.9
- CVE-2023-30145Camaleon CMS v2.7.0 was discovered to contain a Server-Side Template Injection (SSTI) vulnerability via the formats parameter.9.8
- CVE-2021-25972Camaleon CMS - Server-Side Request Forgery (SSRF) in Media Upload Feature4.9
- CVE-2021-25971Camaleon CMS - SVG File Upload Creates DoS for Media Upload Feature4.3
- CVE-2021-25970Camaleon CMS - Insufficient Session Expiration after Password Change8.8
- CVE-2021-25969Camaleon CMS - Stored Cross-Site Scripting (XSS) in Comments6.1
- CVE-2018-18260In the 2.4 version of Camaleon CMS, Stored XSS has been discovered. The profile image in the User settings section can be run in the update / upload area via /admin/media/upload?actions=false. NOTE...6.1
The record
- Peak rank
- #124 in Oct 2021
- Busiest month shown
- Oct 2021, 4 CVEs
- Months with a KEV entry
- 0 since Oct 2021
- Monthly snapshots
- 1 since 2021