Products: 1
    Vulnerabilities: 11
    Known Exploited: 0
    3
    Critical Level Threats
    3
    High Level Threats
    5
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-3795

    doramart DoraCMS v1.js createFileBypath path traversal

    Last Modified: Apr 17, 2026
    Published: Mar 09, 2026

    CVE-2026-3794

    doramart DoraCMS Email API send improper authentication

    Last Modified: Apr 16, 2026
    Published: Mar 09, 2026

    CVE-2026-25870

    DoraCMS <= 3.1 UEditor Remote Image Fetch SSRF

    Last Modified: Apr 15, 2026
    Published: Feb 10, 2026

    CVE-2024-28715

    Cross Site Scripting vulnerability in DOraCMS v.2.18 and before allows a remote attacker to execute arbitrary code via the markdown0 function in the /app/public/apidoc/oas3/wrap-components/markdown.jsx endpoint.

    Last Modified: Jun 24, 2025
    Published: Mar 19, 2024

    CVE-2023-51840

    DoraCMS 2.1.8 is vulnerable to Use of Hard-coded Cryptographic Key.

    Last Modified: May 29, 2025
    Published: Jan 29, 2024
    Items Per Page
    Html-Js Vulnerabilities & Security CVEs | CVE-DB