📦 Leptoncms

by Lepton Cms

🔍 What is Leptoncms?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-56704

HIGH CVSS 8.8 Dec 9, 2025

LeptonCMS 7.3.0 contains an arbitrary file upload vulnerability due to insufficient file validation. Authenticated attackers can upload malicious ZIP/PHP files to achieve remote code execution. This a...

CVE-2024-29514

HIGH CVSS 8.8 Apr 2, 2024

This vulnerability allows authenticated remote attackers to upload malicious PHP files to lepton v7.1.0, potentially leading to remote code execution. Any system running the vulnerable version of lept...

CVE-2024-24520

HIGH CVSS 7.8 Mar 21, 2024

CVE-2024-24520 is a code injection vulnerability in Lepton CMS v7.0.0 that allows local attackers to execute arbitrary code via the upgrade.php file in the languages directory. This affects all instal...

CVE-2024-24399

HIGH CVSS 7.2 Jan 25, 2024

CVE-2024-24399 is an arbitrary file upload vulnerability in LEPTON CMS v7.0.0 that allows authenticated attackers to upload PHP files to the languages directory, leading to remote code execution. This...