Flatpress

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 37
    Known Exploited: 0
    2
    Critical Level Threats
    7
    High Level Threats
    24
    Medium Level Threats
    4
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-56785

    FlatPress - Stored Cross-Site Scripting via Unescaped Comment and Contact Form Fields

    Last Modified: Jun 24, 2026
    Published: Jun 23, 2026

    CVE-2025-44108

    A stored Cross-Site Scripting (XSS) vulnerability exists in the administration panel of Flatpress CMS before 1.4 via the gallery captions component. An attacker with admin privileges can inject a malicious JavaScript payload into the system, which is then stored persistently.

    Last Modified: Jun 12, 2025
    Published: May 19, 2025

    CVE-2025-29602

    flatpress 1.3.1 is vulnerable to Cross Site Scripting (XSS) in Administration area via Manage categories.

    Last Modified: Jun 16, 2025
    Published: May 07, 2025

    CVE-2024-4023

    Stored XSS in flatpressblog/flatpress

    Last Modified: Jun 23, 2025
    Published: Mar 20, 2025

    CVE-2024-9699

    Cross-Site Scripting (XSS) in flatpressblog/flatpress

    Last Modified: Jun 24, 2025
    Published: Mar 20, 2025
    Items Per Page