Classcms

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 9
    Known Exploited: 0
    2
    Critical Level Threats
    1
    High Level Threats
    2
    Medium Level Threats
    3
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-52307

    Authenticated Stored XSS in ClassCMS Title Field

    Last Modified: Sep 08, 2026
    Published: Sep 08, 2026

    CVE-2024-57099

    ClassCMS v4.8 has a code execution vulnerability. Attackers can exploit this vulnerability by constructing a payload in the classview parameter of the model management feature, allowing them to execute arbitrary code and potentially take control of the server.

    Last Modified: May 13, 2025
    Published: Feb 03, 2025

    CVE-2024-57097

    ClassCMS 4.8 is vulnerable to Cross Site Scripting (XSS) in class/admin/channel.php.

    Last Modified: May 13, 2025
    Published: Feb 03, 2025

    CVE-2024-12666

    ClassCMS User Management Page admin insufficient privileges

    Last Modified: Dec 19, 2024
    Published: Dec 16, 2024

    CVE-2024-12503

    ClassCMS Model Management Page admin cross site scripting

    Last Modified: Dec 13, 2024
    Published: Dec 11, 2024
    Items Per Page
    Classcms Vulnerabilities & Security CVEs | CVE-DB