Products: 2
Vulnerabilities: 8
Known Exploited: 0
0
Critical Level Threats
3
High Level Threats
4
Medium Level Threats
1
Low Level Threats
Vulnerabilities
100806040200
JanFebMarAprMayJunJulAugSepOctNovDec
Critical Level Threats
High Level Threats
Medium Level Threats
Low Level Threats
Products Security index
Actions
Items Per Page
Vulnerabilities
CVE-2026-32638
StudioCMS REST getUsers Exposes Owner Account Records to Admin Tokens
Last Modified: Mar 25, 2026
Published: Mar 18, 2026
CVE-2026-32104
StudioCMS: IDOR in User Notification Preferences Allows Any Authenticated User to Modify Any User's Settings
Last Modified: Mar 20, 2026
Published: Mar 11, 2026
CVE-2026-32106
StudioCMS: REST API Missing Rank Check Allows Admin to Create Peer Admin Accounts
Last Modified: Mar 20, 2026
Published: Mar 11, 2026
CVE-2026-32103
StudioCMS: IDOR — Admin-to-Owner Account Takeover via Password Reset Link Generation
Last Modified: Mar 20, 2026
Published: Mar 11, 2026
CVE-2026-32101
StudioCMS S3 Storage Manager Authorization Bypass via Missing `await` on Async Auth Check
Last Modified: Mar 20, 2026
Published: Mar 11, 2026
Items Per Page
