📦 Expressionengine

by Expressionengine

🔍 What is Expressionengine?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-33199

CRITICAL CVSS 9.8 Aug 12, 2021

This vulnerability in Expression Engine allows attackers to manipulate file paths through untrusted input, potentially leading to arbitrary file inclusion or remote code execution. It affects Expressi...

CVE-2025-59473

HIGH CVSS 7.2 Jan 26, 2026

This SQL injection vulnerability allows authenticated admin users to execute arbitrary SQL commands through the Structure component. It affects systems where admin users have access to this functional...

CVE-2020-8242

HIGH CVSS 7.2 Feb 18, 2022

This SQL injection vulnerability in ExpressionEngine allows authenticated users with member creation or admin control panel access to execute arbitrary SQL commands. It affects ExpressionEngine versio...

CVE-2021-27230

HIGH CVSS 8.8 Mar 15, 2021

This vulnerability allows authenticated users with translation permissions to inject arbitrary PHP code into language files in ExpressionEngine CMS. Successful exploitation leads to remote code execut...