Products: 1
Vulnerabilities: 5
Known Exploited: 0
1
Critical Level Threats
4
High Level Threats
0
Medium Level Threats
0
Low Level Threats
Vulnerabilities
100806040200
JanFebMarAprMayJunJulAugSepOctNovDec
Critical Level Threats
High Level Threats
Medium Level Threats
Low Level Threats
Products Security index
Actions
Items Per Page
Vulnerabilities
CVE-2026-70375
HashBrown CMS - OS Command Injection via Git Deployer Branch Field
Last Modified: Aug 10, 2026
Published: Aug 05, 2026
CVE-2026-70374
HashBrown CMS - OS Command Injection in Media Upload Thumbnail Generation
Last Modified: Aug 10, 2026
Published: Aug 05, 2026
CVE-2020-6948
A remote code execution issue was discovered in HashBrown CMS through 1.3.3. Server/Entity/Deployer/GitDeployer.js has a Service.AppService.exec call that mishandles the URL, repository, username, and password.
Last Modified: Nov 21, 2024
Published: Jan 13, 2020
CVE-2020-6949
A privilege escalation issue was discovered in the postUser function in HashBrown CMS through 1.3.3. An editor user can change the password hash of an admin user's account, or otherwise reconfigure that account.
Last Modified: Nov 21, 2024
Published: Jan 13, 2020
CVE-2020-5840
An issue was discovered in HashBrown CMS before 1.3.2. Server/Entity/Resource/Connection.js allows an attacker to reach a parent directory via a crafted name or ID field.
Last Modified: Nov 21, 2024
Published: Jan 06, 2020
Items Per Page
