Wtcms Project

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 18
    Known Exploited: 0
    2
    Critical Level Threats
    5
    High Level Threats
    11
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2025-13786

    taosir WTCMS index.php fetch code injection

    Last Modified: Dec 11, 2025
    Published: Nov 30, 2025

    CVE-2025-13783

    taosir WTCMS CommentadminController CommentadminController.class.php delete sql injection

    Last Modified: Dec 11, 2025
    Published: Nov 30, 2025

    CVE-2025-13782

    taosir WTCMS SlideController SlideController.class.php delete sql injection

    Last Modified: Dec 11, 2025
    Published: Nov 30, 2025

    CVE-2024-48239

    An issue was discovered in WTCMS 1.0. In the plupload method in \AssetController.class.php, the app parameters aren't processed, resulting in Cross Site Scripting (XSS).

    Last Modified: Apr 17, 2025
    Published: Oct 25, 2024

    CVE-2024-48237

    WTCMS 1.0 is vulnerable to Incorrect Access Control in \Common\Controller\HomebaseController.class.php.

    Last Modified: Apr 17, 2025
    Published: Oct 25, 2024
    Items Per Page
    Wtcms_Project Vulnerabilities & Security CVEs | CVE-DB