VendorsflatCoreflatcore-cms2.0.8
Vulnerabilities

flatCore flatCore-cms 2.0.8

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2021-41403
flatCore-CMS version 2.0.8 calls dangerous functions, causing server-side request forgery vulnerabilities.
Published 2022-06-15 · Modified
9.8EPSS 0.191
CVE-2021-41402
flatCore-CMS v2.0.8 has a code execution vulnerability, which could let a remote malicious user execute arbitrary PHP code.
Published 2022-06-16 · Modified
8.8EPSS 0.014
CVE-2021-40902
flatCore-CMS version 2.0.8 is affected by Cross Site Scripting (XSS) in the "Create New Page" option through the index page.
Published 2022-06-13 · Modified
5.4EPSS 0.005