Products: 5
    Vulnerabilities: 11
    Known Exploited: 0
    1
    Critical Level Threats
    2
    High Level Threats
    7
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2025-50857

    ZenTaoPMS v18.11 through v21.6.beta is vulnerable to Directory Traversal in /module/ai/control.php. This allows attackers to execute arbitrary code via a crafted file upload

    Last Modified: Apr 15, 2026
    Published: Feb 26, 2026

    CVE-2026-2552

    ZenTao Editor control.php delete path traversal

    Last Modified: Apr 17, 2026
    Published: Feb 16, 2026

    CVE-2026-2551

    ZenTao Backup control.php delete path traversal

    Last Modified: Apr 17, 2026
    Published: Feb 16, 2026

    CVE-2026-1884

    ZenTao Webhook model.php fetchHook server-side request forgery

    Last Modified: Apr 17, 2026
    Published: Feb 04, 2026

    CVE-2025-13789

    ZenTao model.php makeRequest server-side request forgery

    Last Modified: Dec 04, 2025
    Published: Nov 30, 2025
    Items Per Page
    Zentao Vulnerabilities & Security CVEs | CVE-DB