Anchorcms

    Dashboard / Vendors

    Products: 2
    Vulnerabilities: 14
    Known Exploited: 0
    1
    Critical Level Threats
    5
    High Level Threats
    7
    Medium Level Threats
    1
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-88959

    Anchor CMS through 0.12.7 Privilege Escalation via Missing Authorization on Admin User-Management Endpoints

    Last Modified: Sep 11, 2026
    Published: Sep 10, 2026

    CVE-2025-46041

    A stored cross-site scripting (XSS) vulnerability in Anchor CMS v0.12.7 allows attackers to inject malicious JavaScript via the page description field in the page creation interface (/admin/pages/add).

    Last Modified: Jun 25, 2025
    Published: Jun 09, 2025

    CVE-2024-37732

    Cross Site Scripting vulnerability in Anchor CMS v.0.12.7 allows a remote attacker to execute arbitrary code via a crafted .pdf file.

    Last Modified: Nov 21, 2024
    Published: Jun 24, 2024

    CVE-2024-29338

    Anchor CMS v0.12.7 was discovered to contain a Cross-Site Request Forgery (CSRF) via /anchor/admin/categories/delete/2.

    Last Modified: Mar 28, 2025
    Published: Mar 22, 2024

    CVE-2024-29499

    Anchor CMS v0.12.7 was discovered to contain a Cross-Site Request Forgery (CSRF) via /anchor/admin/users/delete/2.

    Last Modified: Mar 28, 2025
    Published: Mar 22, 2024
    Items Per Page
    Anchorcms Vulnerabilities & Security CVEs | CVE-DB