VendorsLEPTON CMSleptoncms7.3.0
Vulnerabilities

LEPTON CMS Lepton-CMS LeptonCMS 7.3.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2025-56704
LeptonCMS version 7.3.0 contains an arbitrary file upload vulnerability, which is caused by the lack of proper validation for uploaded files. An authenticated attacker can exploit this vulnerability by uploading a specially crafted ZIP/PHP file to execute arbitrary code.
Published 2025-12-09 · Modified
8.8EPSS 0.008