📦 07flycms

by 07fly

🔍 What is 07flycms?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-25379

CRITICAL CVSS 9.6 Feb 28, 2025

A Cross-Site Request Forgery (CSRF) vulnerability in 07FLYCMS v1.3.9 allows remote attackers to trick authenticated users into executing unauthorized delete operations via the id parameter in the del....

CVE-2025-7078

MEDIUM CVSS 4.3 Jul 6, 2025

This CVE describes a Cross-Site Request Forgery (CSRF) vulnerability in 07FLYCMS, 07FLY-CMS, and 07FlyCRM products up to version 1.3.9. Attackers can trick authenticated users into performing unintend...

CVE-2024-51156

MEDIUM CVSS 4.7 Nov 14, 2024

This CSRF vulnerability in 07FLYCMS V1.3.9 allows attackers to trick authenticated administrators into performing unintended actions by visiting malicious web pages. Attackers could delete system noti...

CVE-2024-51157

MEDIUM CVSS 4.7 Nov 8, 2024

This CSRF vulnerability in 07FLYCMS V1.3.9 allows attackers to trick authenticated users into performing unauthorized actions by visiting malicious web pages. It affects all users of the vulnerable ve...

CVE-2024-9904

MEDIUM CVSS 4.7 Oct 13, 2024

This critical vulnerability in 07FLYCMS/07FlyCRM allows attackers to upload arbitrary files without restrictions via the pictureUpload function. Remote attackers can exploit this to upload malicious f...