📦 A Blog Cms

by Appleple

🔍 What is A Blog Cms?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2022-21142

CRITICAL CVSS 9.8 Feb 24, 2022

CVE-2022-21142 is an authentication bypass vulnerability in a-blog CMS that allows remote unauthenticated attackers to bypass authentication under specific conditions. This affects multiple version se...

CVE-2025-36560

HIGH CVSS 8.6 May 19, 2025

This CVE describes a server-side request forgery (SSRF) vulnerability in a-blog CMS that allows remote unauthenticated attackers to make the server send requests to internal systems. Attackers can pot...

CVE-2025-31103

HIGH CVSS 7.5 Mar 31, 2025

CVE-2025-31103 is an untrusted data deserialization vulnerability in a-blog cms that allows attackers to upload arbitrary files to the server by sending specially crafted requests. This can lead to re...

CVE-2024-23180

HIGH CVSS 8.8 Jan 23, 2024

This vulnerability allows authenticated attackers to upload specially crafted SVG files that bypass input validation in a-blog CMS, leading to remote code execution. It affects multiple versions of a-...

CVE-2024-23182

HIGH CVSS 8.1 Jan 23, 2024

This CVE describes a relative path traversal vulnerability in a-blog CMS that allows authenticated remote attackers to delete arbitrary files on the server. The vulnerability affects multiple version ...

CVE-2024-23348

HIGH CVSS 8.8 Jan 23, 2024

This vulnerability allows authenticated attackers to upload malicious SVG files containing JavaScript code to a-blog CMS. When these files are processed, the JavaScript executes in victims' browsers, ...

CVE-2025-32999

MEDIUM CVSS 5.4 May 19, 2025

This is a stored cross-site scripting (XSS) vulnerability in a-blog CMS that allows authenticated users with contributor or higher privileges to inject malicious scripts into entry editing fields. Whe...

CVE-2024-31395

MEDIUM CVSS 6.1 May 22, 2024

This is a stored cross-site scripting (XSS) vulnerability in a-blog CMS that allows authenticated users with editor privileges or higher to inject malicious scripts into the schedule management page. ...

CVE-2024-30420

MEDIUM CVSS 4.4 May 22, 2024

This SSRF vulnerability in a-blog CMS allows authenticated administrators to read arbitrary files on the server and access internal network resources. Attackers with admin credentials can exploit this...