Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 7.1
CVE-2026-28281
InstantCMS is a free and open source content management system. Prior to 2.18.1, InstantCMS does not validate CSRF tokens, which allows attackers gra…
Instantcms
2.18.1+
HIGH 7.2
CVE-2025-59055
InstantCMS is a free and open source content management system. A blind Server-Side Request Forgery (SSRF) vulnerability in InstantCMS up to and incl…
Instantcms
after 2.17.3
CRITICAL 9.8
CVE-2013-10051
A remote PHP code execution vulnerability exists in InstantCMS version 1.6 and earlier due to unsafe use of eval() within the search view handler. Sp…
Instantcms
after 1.6.0
MEDIUM 5.4
CVE-2024-50348
InstantCMS is a free and open source content management system. In photo upload function in the photo album page there is no input validation taking …
Instantcms
2.16.3+
MEDIUM 5.4
CVE-2024-31213
InstantCMS is a free and open source content management system. An open redirect was found in the ICMS2 application version 2.16.2 when being redirec…
Instantcms
2.16.2+
HIGH 7.2
CVE-2024-31212
InstantCMS is a free and open source content management system. A SQL injection vulnerability affects instantcms v2.16.2 in which an attacker with ad…
Instantcms
No fix yet
HIGH 7.2
CVE-2023-4928
SQL Injection in GitHub repository instantsoft/icms2 prior to 2.16.1.
Icms2
2.16.1+
MEDIUM 5.4
CVE-2023-4878
Server-Side Request Forgery (SSRF) in GitHub repository instantsoft/icms2 prior to 2.16.1-git.
Instantcms
2.16.1+
MEDIUM 6.1
CVE-2023-4655
Cross-site Scripting (XSS) - Reflected in GitHub repository instantsoft/icms2 prior to 2.16.1.
Instantcms
2.16.1+
MEDIUM 5.4
CVE-2023-4652
Cross-site Scripting (XSS) - Stored in GitHub repository instantsoft/icms2 prior to 2.16.1-git.
Instantcms
2.16.1+
MEDIUM 5.4
CVE-2023-4649
Session Fixation in GitHub repository instantsoft/icms2 prior to 2.16.1.
Instantcms
2.16.1+
MEDIUM 5.4
CVE-2023-4651
Server-Side Request Forgery (SSRF) in GitHub repository instantsoft/icms2 prior to 2.16.1.
Instantcms
2.16.1+
CRITICAL 9.1
CVE-2023-4188
SQL Injection in GitHub repository instantsoft/icms2 prior to 2.16.1-git.
Instantcms
2.16.1+
MEDIUM 6.1
CVE-2018-14382
InstantCMS 2.10.1 has /redirect?url= XSS.
Instantcms
No fix yet