Withstudiocms

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 7
    Known Exploited: 0
    0
    Critical Level Threats
    2
    High Level Threats
    4
    Medium Level Threats
    1
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-32638

    StudioCMS REST getUsers Exposes Owner Account Records to Admin Tokens

    Last Modified: Mar 25, 2026
    Published: Mar 18, 2026

    CVE-2026-32104

    StudioCMS: IDOR in User Notification Preferences Allows Any Authenticated User to Modify Any User's Settings

    Last Modified: Mar 20, 2026
    Published: Mar 11, 2026

    CVE-2026-32106

    StudioCMS: REST API Missing Rank Check Allows Admin to Create Peer Admin Accounts

    Last Modified: Mar 20, 2026
    Published: Mar 11, 2026

    CVE-2026-32103

    StudioCMS: IDOR — Admin-to-Owner Account Takeover via Password Reset Link Generation

    Last Modified: Mar 20, 2026
    Published: Mar 11, 2026

    CVE-2026-30945

    StudioCMS: IDOR — Arbitrary API Token Revocation Leading to Denial of Service

    Last Modified: Apr 16, 2026
    Published: Mar 10, 2026
    Items Per Page
    Withstudiocms Vulnerabilities & Security CVEs | CVE-DB