VendorsCMS Made Simplefile_managerall versions
Vulnerabilities

CMS Made Simple File Manager

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2025-63678
An authenticated arbitrary file upload vulnerability in the /uploads/ endpoint of CMS Made Simple Foundation File Manager v2.2.22 allows attackers with Administrator privileges to execute arbitrary code via uploading a crafted PHP file.
Published 2025-11-10 · Analyzed
7.2EPSS 0.004